
GIUDA
Ask a TGS on behalf of another user without password

Ask a TGS on behalf of another user without password

Red Team oriented C# Simple HTTP & WebDAV Server with Net-NTLM hashes capture functionality

Powershell script for enumerating vulnerable DCOM Applications

Run Radmin VPN on Linux via Wine — custom driver, TAP bridge, zero packet loss

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina

PrintNightmare (CVE-2021-34527) PoC Exploit

Cobalt Strike BOF that spawns a process using another user's token and injects Beacon shellcode, enabling post-exploitation and lateral movement via…

SMB Auto Relay provides the automation of SMB/NTLM Relay technique for pentesting and red teaming exercises in active directory environments.

Dump Kerberos tickets from the KCM database of SSSD

CPL remote trigger

Impersonate Logged In Accounts & Execute Commands

Automated Active Directory post-exploitation toolkit for Kerberos ticket extraction, NTLM relay attacks, and lateral movement via NetExec, Impacket,…

The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

Hook PasswordChangeNotify

Exploit for CVE-2017-8464 LNK remote code execution vulnerability. Generates malicious .lnk files for USB-based payload delivery, supporting x86 and…

CVE-2021-1675: ZERO-DAY VULNERABILITY IN WINDOWS PRINTER SERVICE WITH AN EXPLOIT AVAILABLE IN ALL OPERATING SYSTEM VERSIONS

Exploit script for CVE-2020-1472 (ZeroLogon) with automated privilege escalation, credential dumping via secretsdump, and lateral movement using…