
PowerLurk
Malicious WMI Events using PowerShell

Malicious WMI Events using PowerShell

AzureRT - A Powershell module implementing various Azure Red Team tactics

PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory domain…

PowerShell module for post-breach Azure red teaming, automating token extraction, resource enumeration, and lateral movement within managed identity…

PowerShell enumeration script for discovering service-backed COM objects via CLSID/AppID correlation and activation testing.

A framework that create an advanced stealthy dropper that bypass most AVs and have a lot of tricks

A Windows reverse shell payload generator and handler that abuses the http(s) protocol to establish a beacon-like reverse shell.


Tool to audit and attack LAPS environments