
PenBox
PenBox - A Penetration Testing Framework - The Tool With All The Tools , The Hacker's Repo

PenBox - A Penetration Testing Framework - The Tool With All The Tools , The Hacker's Repo

Modular Python3 attack framework for automating exploitation of SIEM platforms (Splunk, Graylog, OSSIM, QRadar, McAfee) via credential theft, payload…

Windows Session Hijacking via COM

Check for valid credentials across a network over SMB

Manipulating and Abusing Windows Access Tokens.

.Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py

The Shadow Attack Framework

Post-exploitation credential harvesting toolkit that injects into password managers and Windows utilities to capture credentials via DLL proxying,…

Python library and client for token manipulations and impersonations for privilege escalation on Windows

C# Reflective loader for unmanaged binaries.

This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

Targeted evil twin attacks against WPA2-Enterprise networks. Indirect wireless pivots using hostile portal attacks.

A windows token impersonation tool

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

HackTheBox TwoMillion machine writeup — API abuse, command injection & CVE-2023-0386

PowerSploit - A PowerShell Post-Exploitation Framework

RunasCs - Csharp and open version of windows builtin runas.exe

Windows token theft and privilege escalation tool that steals leaked tokens from processes, enables SYSTEM-level access, user impersonation, and…