
ranger
A tool for security professionals to access and interact with remote Microsoft Windows based systems.

A tool for security professionals to access and interact with remote Microsoft Windows based systems.

This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

Tool for extracting Windows credentials (passwords, hashes, Kerberos tickets) from memory and performing pass-the-hash, pass-the-ticket, and golden…

SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and update…

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it

A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY

A Bypass Anti-virus Software Lateral Movement Command Execution Tool

An automated SMB relay exploitation script.

Curated wordlists for brute-forcing SSH private key filenames, aiding penetration testers in locating keys via LFI or enumeration during lateral…

Exploit for CVE-2021-36934

CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell,…

Vulnerable Samba 3.0.24 environment for reproducing CVE-2007-2447 command execution, intended for exploit testing and security research.

Exploit code for CVE-2021-1675, a Windows Print Spooler remote code execution vulnerability, demonstrating the attack and providing a…

Cross-platform network execution toolkit (SMB/Kerberos/WMI/LDAP/DCSync) built on TrustedSec's Titanis - NetExec-style workflow in C#

A tool to make socks connections through HTTP agents

A little tool to play with the Seclogon service

Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…