
Dragnmove
Infect Shared Files In Memory for Lateral Movement

Infect Shared Files In Memory for Lateral Movement

Powershell script for enumerating vulnerable DCOM Applications


A Post exploitation tool written in C# uses either CIM or WMI to query remote systems.

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

Escalate from Backup Operator to Domain Admin using four techniques: remote service creation, DSRM registry manipulation, SAM/SYSTEM hive dumping,…

BYOVD: Use 360 WFP driver to block EDR/XDR network connection.

Modified dropbear server which acts as a client and allows authless login

PowerShell toolkit for Active Directory penetration testing, featuring domain/user/group enumeration, trust relationship analysis, RDP configuration,…

This C# tool sprays for admin access over the entire domain

VMware Aria Operations for Logs CVE-2023-34051

Universal exploitation tool for CVE-2025-33073 targeting Windows Domain Controllers with DNSAdmins privileges and WinRM enabled.

A script to automate keystrokes through a graphical desktop program.

exp for CVE-2019-0887
