
gopher47
A third-party Gopher Assassin for the Havoc Framework.

A third-party Gopher Assassin for the Havoc Framework.

Control a system remotely via telegram

Cobalt Strike BOF that retrieves Windows geolocation coordinates via WinRT and legacy ILocation APIs, with automatic registry permission management.

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

VBScript tool that extracts and displays saved Wi-Fi passwords from Windows systems, outputting credentials to a text file for local access.

An interactive CLI application for interacting with authenticated Jupyter instances.

PAKURI-THON is a tool that supports pentesters with various pentesting tools and C4 server (command & control and chat & communication server).…

Anvil is a runtime-first attack surface assessment tool for Windows thick client applications, built for penetration testers and security researchers…

Automated NTLM relay attack tool combining Responder poisoning with Impacket relay and secretsdump for credential capture, hash relaying, and lateral…

Exploiting HID VertX and EDGE access control systems

Tools for attacking Computer Use Agents

A fully featured Windows backdoor that uses email as a C&C server

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…

A LAPS dumper written using the impacket library.

Pentest-Command

Windows Auto Post Exploitation - For ReD Team