A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts and relaying to the certificate service.
Repositories
klezVirus Repositories
AIDA64DRIVER Elevation of Privilege Vulnerability
A console obfuscator for .NET assemblies.
Bring your own Unwind Data Framework
CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit
Pure C++, weaponized, fully automated implementation of RottenPotatoNG
Self-developed tools for Lateral Movement/Code Execution
NIST-CAVS Extended - Encryption Auto Testing Toolkit
Dangling COM Keys Finder
DooPHP - High performance MVC based PHP 5 framework
Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths
A 2-in-1 toolset of https://github.com/x0rz/EQGRP_Lost_in_Translation and https://github.com/x0rz/EQGRP
A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.
HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.
PIC lsass dumper using cloned handles
Create fake certs for binaries using windows binaries and the power of bat files
A small x64 library to load dll's into memory.
A more advanced free and open .NET obfuscator using dnlib.
Detect strange memory regions and DLLs