
MalSeclogon
A little tool to play with the Seclogon service

A little tool to play with the Seclogon service

Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…

Python tool to automatically perform SPN-less RBCD attacks.

Nacker is a tool to circumvent 802.1x Network Access Control (NAC) on a wired LAN. Nacker will help you locate any non-802.1x configurable hosts on…

Leverage WindowsApp createdump tool to obtain an lsass dump

A Tool to use PowerShell Remoting / WinRM to execute PowerShell commands on remote hosts through WinRM double hop technique.

Pass the Hash to a named pipe for token Impersonation

Deploy payloads to *Nix systems en masse

C# post-exploitation tool for abusing Microsoft Configuration Manager (SCCM) to perform lateral movement, credential gathering, and NTLM…

Modified version of the passing-the-hash tool collection made to work straight out of the box

Abuse SCCM servers to deploy malicious applications to managed hosts for lateral movement and red team operations.

Manipulating and Abusing Windows Access Tokens.

Professional network monitoring & visualization tool. L0P4Map combines high-speed ARP discovery with full nmap integration and a real-time…

C# tool leveraging WinDivert driver to intercept and redirect Windows port 445 traffic for NTLM relay attacks via Cobalt Strike, enabling lateral…

Firecat is a penetration testing tool that allows you to punch reverse TCP tunnels out of a compromised network.

ARP-based network scanner that discovers devices on a subnet, displaying IP addresses, MAC addresses, manufacturers, and device models with optional…

ARP spoofing, HTTP redirection, DNS spoofing and DNS forging using pcap library

Python script that patches the termsrv.dll file on Windows to enable multiple concurrent RDP sessions, supporting Windows 10 versions 1703 through…