
PT-ToolKit
Exploits Scripts and other tools that are useful during Penetration-Testing or Red Team engagement

Exploits Scripts and other tools that are useful during Penetration-Testing or Red Team engagement

Using Struts2 and PowerShell to recreate CVE-2017-5638 OGNL Injection vulnerability.

A fork of the great TokenTactics with support for CAE and token endpoint v2

Simple CLI tool for the generation of bind and reverse shells in multiple languages

C2 Powershell Command & Control Framework with BuiltIn Commands

DNS tunneling tool using PowerShell and Nslookup to exfiltrate data and deliver payloads via DNS TXT/MX records, bypassing Constrained Language Mode…

A version of CVE-2017-0213 that I plan to use with an Empire stager

PoC exploit for CVE-2022-3218 targeting WiFi Mouse Server 1.7.8.5, achieving RCE via keystroke injection and in-memory PowerShell payload delivery…

A tool for checking if MFA is enabled on multiple Microsoft Services


SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, SuperPuTTY,…

PowerShell script to test if a web app is vulnerable to CVE-2025-29927

SkyArk helps to discover, assess and secure the most privileged entities in Azure and AWS

A swiss army knife for pentesting networks

Executes common PowerSploit Powerview functions then combines output into a spreadsheet for easy analysis.

Native Nim WinRM shell with NTLM, Kerberos, file transfer, in-memory helpers, and AD/OPSEC reporting

Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab

A repository of tools for pentesting of restricted and isolated environments.