
RedGhost
Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

Windows Privilege Escalation from User to Domain Admin.

Partial python implementation of SharpGPOAbuse

PowerSploit - A PowerShell Post-Exploitation Framework

Tools and Techniques for Red Team / Penetration Testing

RunasCs - Csharp and open version of windows builtin runas.exe

SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order…

The Shadow Attack Framework

Stop Windows Defender programmatically

SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket

Kerberos relay framework for Windows environments enabling authentication relay, privilege escalation, and lateral movement via LDAP, SMB, HTTP, and…

Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework

A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

Automates local privilege escalation to SYSTEM on domain-joined Windows workstations by relaying NTLM authentication from WebDAV to LDAP, leveraging…

Lightweight Go binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy for ephemeral red team access. Supports…