
gopacket
A complete Go port of Impacket - 63 CLI tools and 24 libraries for Windows & Active Directory protocol attacks, compiled to a single dependency-free…

A complete Go port of Impacket - 63 CLI tools and 24 libraries for Windows & Active Directory protocol attacks, compiled to a single dependency-free…

Enumerate user accounts and registered authentication methods via the Microsoft Self-Service Password Reset (SSPR) portal

Authorized education-sector recon & triage orchestrator (nmap/dirsearch/sqlmap/hydra + CVE-2024-4577, secret/API-key leak, XSS, wp2shell) with a web…

Reverse engineering analysis of DarkTortilla RAT, a sophisticated malware that steals credit card data, decrypts browser passwords, and exfiltrates…

Your ONVIF and RTSP camera companion for discovering and hacking real-world security cameras 🎥

PoC for CVE-2026-27912 - Windows Kerberos Elevation of Privilege (ResetNightmare). Unauthorized password reset via Kerberos flaw. For security…

Collection of VBA macro published in our twitter / blog

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

Deployable AWS-hosted Active Directory pentest lab with domain controller and vulnerable MSSQL; practice S4U2Self abuse, SQL brute force, and RCE.

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

Credential Guard Bypass Via Patching Wdigest Memory

Some usefull Scripts and Executables for Pentest & Forensics

Rust in-memory dumper

Leak of any user's NetNTLM hash. Fixed in KB5040434

Weaponizing DCOM for NTLM Authentication Coercions

PoCs for Wellbia XIGNCODE3 anti-cheat xhunter driver family - xhunter1.sys v2023.12.7.78 and xhunter2.sys v2026.6.1.192 (CVE-2026-15430,…

POC tool for ResetNightmare (CVE-2026-27912)

A credential extraction BOF for Veeam Backup and Replication and Veeam One