
Internal-Monologue
Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

A simple yet effective python3 script to perform DNS spoofing via ARP poisoning

Fileless lateral movement tool that relies on ChangeServiceConfigA to run command

A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.

Fileless lateral movement tool using WMI Event Subscriptions to execute .NET assemblies in memory, with shellcode injection via named pipes for…

A SOCKS proxy for Citrix.

ARP spoofing and network packet manipulation tool for man-in-the-middle attacks, traffic interception, and LAN reconnaissance using Python and pcap.

Agent-server HTTP+TCP tunneling tool for exposing multiple internal services to external networks. Supports multi-level pivoting and SOCKS proxy…

Golang network scanner with arp discovery and own parser

Fileless lateral movement tool using WMI Event Filters and MSBuild execution to deploy shellcode on remote Windows systems via LogFileEventConsumer.

Windows Session Hijacking via COM

Infect Shared Files In Memory for Lateral Movement

Advanced phishing tool combining OAuth Device Code authentication flow with QR codes to harvest Microsoft authentication tokens via MFA update…

C# tool for lateral movement through WSUS by creating, approving, and deploying malicious updates to target Windows clients in Active Directory…

Trying to tame the three-headed dog.

A windows token impersonation tool

Windows token theft and privilege escalation tool that steals leaked tokens from processes, enables SYSTEM-level access, user impersonation, and…

Rapid psexec-style attack tool using Samba for remote command execution, credential dumping, and lateral movement across Windows networks with hash…