
raw-packet
Raw-packet Project

Raw-packet Project

CLI MITM proxy that converts SOCKS4/SOCKS5 into HTTP/HTTPS/HTTP2/HTTP3 proxy with transparent TCP/UDP redirection, ARP/NDP/DNS spoofing, traffic…

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.

Windows local privilege escalation exploit using NBNS spoofing, fake WPAD proxy, and HTTP-to-SMB NTLM relay to gain NT AUTHORITY\SYSTEM access.

.NET IPv4/IPv6 machine-in-the-middle tool for penetration testers

Automates local privilege escalation to SYSTEM on domain-joined Windows workstations by relaying NTLM authentication from WebDAV to LDAP, leveraging…

Hijack Putty sessions in order to sniff conversation and inject Linux commands.

Lightweight Go binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy for ephemeral red team access. Supports…

A User Impersonation tool - via Token or Shellcode injection

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

PoC to tunnel the Meterpreter reverse HTTP shell over RDP Virtual Channels

LOKI (Limited Obstructive Keyboard Impersonator) is a RDP File Transfer Tool Using Keypresses

A script to automate keystrokes through a graphical desktop program.

Exploit for CVE-2024-40586: coerces Windows hosts to authenticate via a vulnerable FortiClient named pipe, enabling privilege escalation to SYSTEM or…

Exploit for CVE-2024-32002, a Git RCE vulnerability that uses recursive submodule cloning and symlinks to execute arbitrary commands on Windows and…