
PyPsPipeJack
Python implementation of OpenPsPipeJack

Python implementation of OpenPsPipeJack


KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

Manipulating and Abusing Windows Access Tokens.

A basic emulation of an "RPC Backdoor"

Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

RunasCs - Csharp and open version of windows builtin runas.exe

Stop Windows Defender programmatically

A windows token impersonation tool

Programmatically start WebClient from an unprivileged session to enable that juicy privesc.

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

Rusty Impersonate

Ask a TGS on behalf of another user without password


Previously-0day exploit from the Hacking Team leak, written by Eugene Ching/Qavar.

This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB share.