
SetupHijack
SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and update…

SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and update…

Windows local privilege escalation exploit using NBNS spoofing, fake WPAD proxy, and HTTP-to-SMB NTLM relay to gain NT AUTHORITY\SYSTEM access.

RunasCs - Csharp and open version of windows builtin runas.exe

Manipulating and Abusing Windows Access Tokens.

HTTP/HTTPS interception proxy for testing Windows authentication mechanisms, supporting NTLM, Kerberos, pass-the-hash, pass-the-ticket and relay…

Cobalt Strike BOF that spawns a process using another user's token and injects Beacon shellcode, enabling post-exploitation and lateral movement via…

Relays NegoEx/PKU2U Kerberos authentication to arbitrary targets, enabling credentialless authentication, command execution, SMB hash dumping, and…

Ask a TGS on behalf of another user without password

Impersonate Logged In Accounts & Execute Commands

Some scripts to abuse kerberos using Powershell

A windows token impersonation tool

Pass the Hash to a named pipe for token Impersonation

Pass the Hash to a named pipe for token Impersonation

Rusty Impersonate