
GhostTask
A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.

A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.

Advanced phishing tool combining OAuth Device Code authentication flow with QR codes to harvest Microsoft authentication tokens via MFA update…

Fileless lateral movement tool using WMI Event Subscriptions to execute .NET assemblies in memory, with shellcode injection via named pipes for…

A windows token impersonation tool

Pass the Hash to a named pipe for token Impersonation

Nacker is a tool to circumvent 802.1x Network Access Control (NAC) on a wired LAN. Nacker will help you locate any non-802.1x configurable hosts on…

C# tool leveraging WinDivert driver to intercept and redirect Windows port 445 traffic for NTLM relay attacks via Cobalt Strike, enabling lateral…

Firecat is a penetration testing tool that allows you to punch reverse TCP tunnels out of a compromised network.

Leverage WindowsApp createdump tool to obtain an lsass dump

Programmatically start WebClient from an unprivileged session to enable that juicy privesc.

conduct lateral movement attack by leveraging unfiltered services display name to smuggle binaries as chunks into the target machine

Scripts to clone CA certificates for use in HTTPS client attacks.

A Tool to use PowerShell Remoting / WinRM to execute PowerShell commands on remote hosts through WinRM double hop technique.

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…

Reverse Tunneling made easy for pentesters, by pentesters https://sysdream.com/

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

The Shadow Attack Framework