
harpyTools
Automated Active Directory post-exploitation toolkit for Kerberos ticket extraction, NTLM relay attacks, and lateral movement via NetExec, Impacket,…

Automated Active Directory post-exploitation toolkit for Kerberos ticket extraction, NTLM relay attacks, and lateral movement via NetExec, Impacket,…

Partial python implementation of SharpGPOAbuse

Python codes of my blog.

psexecsvc - a python implementation of PSExec's native service implementation

Python implementation of OpenPsPipeJack

Offensive MSSQL toolkit written in Python, based off SQLRecon

Python PoC for CVE-2026-73570, an SMTP command injection in Zimbra. Sends malformed RCPT TO payloads to trigger shell command execution via…

Python and Powershell internal penetration testing framework

Loot and decrypt Windows DPAPI secrets remotely or offline, including masterkeys, credentials, vaults, certificates, browser data, and cached Azure…

WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application control and…

Mimikatz implementation in pure Python

Blaze Telegram Backdoor Toolkit is a post-exploitation tool that leverages the infrastructure of Telegram as a C&C

CVE-2021-34527 is a critical remote code execution and local privilege escalation vulnerability dubbed "PrintNightmare."

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

Enhanced version of secretsdump.py from Impacket. Adds multi-threading and accepts an input file with a list of target hosts for simultaneous secrets…

Extract credentials from lsass remotely

Source code for the book "Black Hat Python" by Justin Seitz. The code has been fully converted to Python 3, reformatted to comply with PEP8 standards…
