


Automation for internal Windows Penetrationtest / AD-Security

A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office365 users.

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

A small Aggressor script to help Red Teams identify foreign processes on a host machine

Course repository for PowerShell for Pentesters Course

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

Portia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been…

This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

PeekABoo tool can be used during internal penetration testing when a user needs to enable Remote Desktop on the targeted machine. It uses PowerShell…

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS