
impersonate-proxy
A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML…

A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML…

Public writeup, PoC, and emulation materials for CVE-2026-8508 affecting Zyxel captive-portal social login.

Python implementation of OpenPsPipeJack

CVE-2025-26264 - GeoVision GV-ASWeb with the version 6.1.2.0 or less, contains a Remote Code Execution (RCE) vulnerability within its Notification…


KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

A basic emulation of an "RPC Backdoor"

A script that helps you understand why your E-Mail ended up in Spam

Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

RunasCs - Csharp and open version of windows builtin runas.exe

Stop Windows Defender programmatically

Infect Shared Files In Memory for Lateral Movement

A windows token impersonation tool

Programmatically start WebClient from an unprivileged session to enable that juicy privesc.

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

Repository of attack and defensive information for Business Email Compromise investigations

Rusty Impersonate