
siras
Security Incident Response Automated Simulations (SIRAS) are internal events that provide a structured opportunity to practice the incident response…

Security Incident Response Automated Simulations (SIRAS) are internal events that provide a structured opportunity to practice the incident response…
Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

Automation for internal Windows Penetrationtest / AD-Security

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment

Test and exploit STUN/TURN servers for misconfigurations, enabling internal network pivoting via SOCKS proxy, memory leak attacks, and internal port…

A tool to make socks connections through HTTP agents

Python and Powershell internal penetration testing framework

A framework for identifying and launching exploits against internal network hosts. Works via WebRTC IP enumeration combined with WebSockets and…

Portia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been…

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

DejaVU - Open Source Deception Framework

An ADCS honeypot to catch attackers in your internal network.

This is an open source tool to dump the wifi profiles and cleartext passwords of the connected access points on the Windows machine. This tool will…

Explore the network using VPNPivot tool

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

Agent-server HTTP+TCP tunneling tool for exposing multiple internal services to external networks. Supports multi-level pivoting and SOCKS proxy…