
ranger
A tool for security professionals to access and interact with remote Microsoft Windows based systems.

A tool for security professionals to access and interact with remote Microsoft Windows based systems.

SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and update…

Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…

Pass the Hash to a named pipe for token Impersonation

Deploy payloads to *Nix systems en masse

Fileless lateral movement tool using WMI Event Subscriptions to execute .NET assemblies in memory, with shellcode injection via named pipes for…

Fileless lateral movement tool using WMI Event Filters and MSBuild execution to deploy shellcode on remote Windows systems via LogFileEventConsumer.

Rapid psexec-style attack tool using Samba for remote command execution, credential dumping, and lateral movement across Windows networks with hash…

Generates malicious LNK files to coerce Net-NTLMv2 hashes via Windows Shell UNC handling, with custom SMB listener and relay integration for…

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Pass the Hash to a named pipe for token Impersonation

A Windows Remote Administration Tool in Visual Basic with UNC paths

Proof-of-concept exploit for CVE-2021-1675 (PrintNightmare) targeting Windows Print Spooler. Uses msfvenom-generated malicious DLL delivered via SMB…

The Shadow Attack Framework

Phishing with a fake reCAPTCHA

C# Reflective loader for unmanaged binaries.

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina