
SharpImpersonation
A User Impersonation tool - via Token or Shellcode injection

A User Impersonation tool - via Token or Shellcode injection

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

A Powershell implementation of PrivExchange designed to run under the current user's context

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

Proof of conept to exploit vulnerable proxycommand configurations on ssh clients (CVE-2023-51385)

A script to automate keystrokes through a graphical desktop program.

Proof-of-concept exploit for Windows local privilege escalation (CVE-2023-21746) abusing NTLM local authentication to gain SYSTEM privileges via SMB…

Proof-of-concept for CVE-2025-47962 demonstrating local privilege escalation via DLL hijacking in Windows IpOverUsbSvc service due to insecure…

Exploiting Parsec for Windows to gain SYSTEM privileges

Proof-of-concept exploit demonstrating CVE-2020-25265 and CVE-2020-25266, using a crafted MP3 file to achieve arbitrary code execution via…

Proof-of-concept exploit for CVE-2015-1769 using a crafted VHD file and symbolic link to trigger a Windows privilege escalation via Mount Manager.

Exploit for CVE-2024-40586: coerces Windows hosts to authenticate via a vulnerable FortiClient named pipe, enabling privilege escalation to SYSTEM or…

PunkBuster LPI to NT AUTHORITY\SYSTEM

Exploit for CVE-2024-32002, a Git RCE vulnerability that uses recursive submodule cloning and symlinks to execute arbitrary commands on Windows and…

Kerberos relaying and unconstrained delegation abuse toolkit

SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket

Self-developed tools for Lateral Movement/Code Execution