
Supershell
Supershell C2 远控平台,基于反向SSH隧道获取完全交互式Shell

Supershell C2 远控平台,基于反向SSH隧道获取完全交互式Shell

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Ask a TGS on behalf of another user without password

Lateral Movement Using DCOM and DLL Hijacking

Some scripts to abuse kerberos using Powershell


Windows token manipulation utility that lists, steals, and impersonates process or user tokens to execute commands as other users, leveraging…


Automates vishing calls via Discord bot and API to intercept SMS one-time passwords, bypassing SMS verification for PayPal, Google, Instagram, and 3D…

Cobalt Strike BOF that spawns a process using another user's token and injects Beacon shellcode, enabling post-exploitation and lateral movement via…

A C# implementation of dumping credentials from Windows Credential Manager

Open Source C&C Specification

Phishing with a fake reCAPTCHA

Leverage WindowsApp createdump tool to obtain an lsass dump

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

Weaponizing DCOM for NTLM Authentication Coercions

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it

psexecsvc - a python implementation of PSExec's native service implementation