
ranger
A tool for security professionals to access and interact with remote Microsoft Windows based systems.

A tool for security professionals to access and interact with remote Microsoft Windows based systems.

Proof-of-concept module for CVE-2026-54121 (Certighost), exploiting AD CS enrollment validation via rogue LDAP/SMB listeners to impersonate a Domain…

This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it

An automated SMB relay exploitation script.

Exploit for CVE-2021-36934

CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell,…

Cross-platform network execution toolkit (SMB/Kerberos/WMI/LDAP/DCSync) built on TrustedSec's Titanis - NetExec-style workflow in C#

A little tool to play with the Seclogon service

Python tool to automatically perform SPN-less RBCD attacks.

Leverage WindowsApp createdump tool to obtain an lsass dump

Pass the Hash to a named pipe for token Impersonation

Deploy payloads to *Nix systems en masse

C# post-exploitation tool for abusing Microsoft Configuration Manager (SCCM) to perform lateral movement, credential gathering, and NTLM…

Modified version of the passing-the-hash tool collection made to work straight out of the box

Manipulating and Abusing Windows Access Tokens.

Firecat is a penetration testing tool that allows you to punch reverse TCP tunnels out of a compromised network.