
LACheck
Multithreaded C# .NET assembly for enumerating local administrative privileges across Windows hosts via SMB, WMI, and WinRM, with BloodHound…

Multithreaded C# .NET assembly for enumerating local administrative privileges across Windows hosts via SMB, WMI, and WinRM, with BloodHound…

a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )

CVE-2025-33053 Proof Of Concept (PoC)

Post-exploitation toolkit for Azure AD: fetch/search Microsoft Graph data, swap FOCI refresh tokens, and generate Azure CLI auth files from tokens.

Six Degrees of Domain Admin

C# implementation of harmj0y's PowerView

This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported is…

SharpWMI is a C# implementation of various WMI functionality.

New generation of wmiexec.py

Collection of PowerShell functions a Red Teamer may use in an engagement

Credentials gathering tool automating remote procdump and parse of lsass process.

C# port of WMImplant which uses either CIM or WMI to query remote systems

MSSQL client for SCCM environments, enabling reconnaissance, remote PowerShell execution on managed clients, and extraction of sensitive secrets such…

Updated version for the tool UltraRealy with support of the CVE-2019-1040 exploit

A PoC tool designed to enhance the effectiveness of your traps by spreading breadcrumbs & honeytokens across your systems to lure the attacker toward…

Portia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been…

SSH-Snake is a self-propagating, self-replicating, file-less script that automates the post-exploitation task of SSH private key and host discovery.

Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps…