DeadPotato is a windows privilege escalation utility from the Potato family of exploits, leveraging the SeImpersonate right to obtain SYSTEM privileges. This script has been customized from the original GodPotato source code by BeichenDream.
☆479Aug 10, 2026Updated this week
Alternatives and similar repositories for DeadPotato
Users that are interested in DeadPotato are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework☆650May 8, 2025Updated last year
- Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!☆566May 9, 2025Updated last year
- Fileless atexec, no more need for port 445☆416Mar 28, 2024Updated 2 years ago
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆362Nov 19, 2024Updated last year
- Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)☆745May 7, 2025Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.☆541Nov 14, 2025Updated 8 months ago
- ☆239Oct 8, 2024Updated last year
- A Rust implementation of GodPotato — abusing SeImpersonate to gain SYSTEM privileges. Includes a TCP-based reverse shell and indirect NTA…☆368Mar 17, 2026Updated 4 months ago
- ☆248May 5, 2024Updated 2 years ago
- Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advance…☆589May 22, 2025Updated last year
- SeImpersonate privilege escalation tool for Windows 8 - 11 and Windows Server 2012 - 2022 with extensive PowerShell and .NET reflection s…☆511May 16, 2024Updated 2 years ago
- Collection of Beacon Object Files (BOF) for Cobalt Strike☆711Jul 16, 2026Updated 3 weeks ago
- Collection of UAC Bypass Techniques Weaponized as BOFs☆652Feb 21, 2024Updated 2 years ago
- Sleep obfuscation☆275Dec 13, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Process injection alternative☆408Sep 6, 2024Updated last year
- ☆388Oct 17, 2025Updated 9 months ago
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆252Jun 11, 2024Updated 2 years ago
- A Windows potato to privesc☆398Jul 30, 2026Updated 2 weeks ago
- Generating legitimate call stack frame along with indirect syscalls by abusing Vectored Exception Handling (VEH) to bypass User-Land EDR …☆314Jul 31, 2024Updated 2 years ago
- Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).☆602Mar 19, 2024Updated 2 years ago
- PoC Exploit for the NTLM reflection SMB flaw.☆713Feb 18, 2026Updated 5 months ago
- ☆100Sep 1, 2024Updated last year
- ☆2,333Nov 24, 2023Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Leverage WindowsApp createdump tool to obtain an lsass dump☆150Sep 20, 2024Updated last year
- LSASS memory dumper using only NTAPIs, creating a minimal minidump. It can be compiled as shellcode (PIC), supports XOR encryption, and r…☆387Apr 26, 2025Updated last year
- New generation of wmiexec.py☆1,294Apr 26, 2026Updated 3 months ago
- Leak of any user's NetNTLM hash. Fixed in KB5040434☆262Aug 13, 2024Updated 2 years ago
- ☆202Mar 28, 2025Updated last year
- ☆711Nov 7, 2023Updated 2 years ago
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆408Apr 26, 2026Updated 3 months ago
- Reflective DLL Injection Made Bella☆250Jan 6, 2025Updated last year
- Windows remote execution multitool☆809Mar 25, 2026Updated 4 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Generic PE loader for fast prototyping evasion techniques☆248Jul 2, 2024Updated 2 years ago
- The DCERPC only printerbug.py version☆233Oct 30, 2025Updated 9 months ago
- A BOF that runs unmanaged PEs inline☆703Oct 23, 2024Updated last year
- BOF for Kerberos abuse (an implementation of some important features of the Rubeus).☆602Nov 23, 2025Updated 8 months ago
- Bypassing UAC with SSPI Datagram Contexts☆472Sep 24, 2023Updated 2 years ago
- Extract and execute a PE embedded within a PNG file using an LNK file.☆478Nov 2, 2024Updated last year
- Enumerate Domain Users Without Authentication☆306Apr 22, 2025Updated last year