
HiveJack
This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

Automation for internal Windows Penetrationtest / AD-Security

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment

Python and Powershell internal penetration testing framework

[WIP] Ulterius™ server where all the magic happens 🚀 :feelsgood:

Portia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been…

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

Course repository for PowerShell for Pentesters Course

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office365 users.

PeekABoo tool can be used during internal penetration testing when a user needs to enable Remote Desktop on the targeted machine. It uses PowerShell…

A small Aggressor script to help Red Teams identify foreign processes on a host machine
