
PrintSpoofer-ReflectiveDLL
The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…


Exploit for CVE-2021-36934

Proof-of-concept exploit for CVE-2021-1675 (PrintNightmare) targeting Windows Print Spooler. Uses msfvenom-generated malicious DLL delivered via SMB…


Cisco Email Security Appliance: Local Privilege Escalation and Shell Escape

Collect information about email addresses from Pastebin

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.


PowerShell Pass The Hash Utils

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

Targeted evil twin attacks against WPA2-Enterprise networks. Indirect wireless pivots using hostile portal attacks.

The Shadow Attack Framework

Supershell C2 远控平台,基于反向SSH隧道获取完全交互式Shell

SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket

Partial python implementation of SharpGPOAbuse

RunasCs - Csharp and open version of windows builtin runas.exe