
patchy
Automated Persistence and Lateral Movement using GCP Patch Management

Automated Persistence and Lateral Movement using GCP Patch Management

SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order…

Automates vishing calls via Discord bot and API to intercept SMS one-time passwords, bypassing SMS verification for PayPal, Google, Instagram, and 3D…

Post-exploitation credential harvesting toolkit that injects into password managers and Windows utilities to capture credentials via DLL proxying,…

mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse

Some scripts to abuse kerberos using Powershell

An extensible toolkit providing penetration testers an easy-to-use platform to deploy Access Points during penetration testing and red team…

Pass the Hash to a named pipe for token Impersonation

DLL that hooks NTLM and Kerberos authentication in lsass.exe to inject a backdoor hash, enabling persistent authenticated access on Windows systems.

Async BOF to automatically extract or renew Kerberos TGTs on a target system.

A PowerShell script to perform PKINIT authentication with the Windows API from a non domain-joined machine.

Escalate from Backup Operator to Domain Admin using four techniques: remote service creation, DSRM registry manipulation, SAM/SYSTEM hive dumping,…

Detection-aware BloodHound attack-path scoring - the quietest route to your objective, calibrated across five detection tiers…

Relays NegoEx/PKU2U Kerberos authentication to arbitrary targets, enabling credentialless authentication, command execution, SMB hash dumping, and…

conduct lateral movement attack by leveraging unfiltered services display name to smuggle binaries as chunks into the target machine

Programmatically start WebClient from an unprivileged session to enable that juicy privesc.

Local privilege escalation PoC for CVE-2026-24294, abusing SMB arbitrary port and NTLM reflection to achieve SYSTEM on Windows Server 2025.

Python script leveraging Impacket to trigger CPL file loading into memory via DCOM IOpenControlPanel interface for lateral movement and code…