quentinhardy / pytmipeLinks
Python library and client for token manipulations and impersonations for privilege escalation on Windows
☆122Updated 2 years ago
Alternatives and similar repositories for pytmipe
Users that are interested in pytmipe are comparing it to the libraries listed below
Sorting:
- ☆162Updated 2 years ago
- ☆193Updated 5 years ago
- ☆260Updated 2 years ago
- lateral movement techniques that can be used during red team exercises☆272Updated 5 years ago
- GhostBuild is a collection of simple MSBuild launchers for various GhostPack/.NET projects☆248Updated 4 years ago
- Parse NTLM challenge messages over HTTP and SMB☆147Updated 2 years ago
- poc for CVE-2020-1337 (Windows Print Spooler Elevation of Privilege)☆174Updated 4 years ago
- Auto-generate an HTaccess for payload delivery -- automatically pulls ips/nets/etc from known sandbox companies/sources that have been se…☆166Updated 4 years ago
- Macro-Enabled Excel File Generator (.xlsm) using the EPPlus Library.☆147Updated 4 years ago
- Yet another PoC for https://www.wietzebeukema.nl/blog/hijacking-dlls-in-windows☆143Updated 4 years ago
- ☆126Updated 4 years ago
- Powershell module to get the NetNTLMv2 hash of the current user☆94Updated 2 years ago
- An on-the-fly Powershell script obfuscator meant for red team engagements. Built out of necessity.☆141Updated 3 years ago
- Dump stuff without touching disk☆162Updated 4 years ago
- A little tool to convert ccache tickets into kirbi (KRB-CRED) and vice versa based on impacket.☆167Updated 2 years ago
- A collection of scripts for dealing with Cobalt Strike beacons in Python☆168Updated 4 years ago
- Recon-AD, an AD recon tool based on ADSI and reflective DLL’s☆329Updated 5 years ago
- Quick and dirty dynamic redirect.rules generator☆158Updated 2 years ago
- Constrained Language Mode + AMSI bypass all in one☆157Updated 5 years ago
- A Powershell implementation of PrivExchange designed to run under the current user's context☆125Updated 6 years ago
- Collection of awesome Cobalt Strike Aggressor Scripts. All credit due to the authors☆154Updated 6 years ago
- A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts t…☆63Updated 6 years ago
- Collection of cyphers for bloodhound☆150Updated 11 months ago
- A sample of proof of concept scripts that run Calc.exe with full source code.☆96Updated 8 months ago
- Python script that takes new output from Get-DomainTrustMapping .csvs and outputs graphml. Based on DomainTrustExplorer.☆97Updated last year
- Lateral Movement technique using DCOM and HTA☆233Updated 2 years ago
- Dll that can be used for side loading and other attack vector.☆201Updated 4 years ago
- Tool that automates Active Directory enumeration☆88Updated 4 years ago
- A tool to create obfuscated HTA script.☆177Updated 3 years ago
- (kinda) Malicious Outlook Reader☆135Updated 4 years ago