
CVE-2020-27955
Proof-of-concept exploit for CVE-2020-27955 in Git-LFS, demonstrating remote code execution via a crafted git clone operation to obtain a reverse…

Proof-of-concept exploit for CVE-2020-27955 in Git-LFS, demonstrating remote code execution via a crafted git clone operation to obtain a reverse…

Infect Shared Files In Memory for Lateral Movement

A SOCKS proxy for Citrix.

A tiny Reverse Sock5 Proxy written in C :V

Exploit script for CVE-2020-1472 (ZeroLogon) with automated privilege escalation, credential dumping via secretsdump, and lateral movement using…

Python library and client for token manipulations and impersonations for privilege escalation on Windows

Stop Windows Defender programmatically

A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.


Collection of tools that reflect the network dimension into Bloodhound's data

Advanced Phishing tool


Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

.NET IPv4/IPv6 machine-in-the-middle tool for penetration testers

A basic emulation of an "RPC Backdoor"

Automated Persistence and Lateral Movement using GCP Patch Management

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

Relays NegoEx/PKU2U Kerberos authentication to arbitrary targets, enabling credentialless authentication, command execution, SMB hash dumping, and…