
susinternals
psexecsvc - a python implementation of PSExec's native service implementation

psexecsvc - a python implementation of PSExec's native service implementation

Windows token theft and privilege escalation tool that steals leaked tokens from processes, enables SYSTEM-level access, user impersonation, and…

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

A little tool to play with the Seclogon service

Hijack Putty sessions in order to sniff conversation and inject Linux commands.

Run Radmin VPN on Linux via Wine — custom driver, TAP bridge, zero packet loss

A desktop operator console for Sliver C2, built with Wails. Provides a native, lightweight GUI interface for Sliver by directly interfacing with its…

Collection of tools that reflect the network dimension into Bloodhound's data

SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using…

Red Team oriented C# Simple HTTP & WebDAV Server with Net-NTLM hashes capture functionality

Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. In C#, C++, Crystal, Python, Rust, Golang, Nim…

Lateral Movement Using DCOM and DLL Hijacking

Powershell script for enumerating vulnerable DCOM Applications

A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.

Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

Windows Session Hijacking via COM

Suricata rules for network anomaly detection