Repositories
decoder-it/KrbRelayEx
decoder-it/KrbRelay-SMBServer
decoder-it/ADCSCoercePotato
decoder-it/TokenStealer
decoder-it/psgetsystem
getsystem via parent process using ps1 & embeded c#
decoder-it/KrbRelayEx-RPC
decoder-it/impacket-partial-mic
Impacket with --remove-mic-partial
decoder-it/printerbugnew
The DCERPC only printerbug.py version
decoder-it/NewMachineAccount
decoder-it/ChgPass
decoder-it/juicy_2
juicypotato for win10 > 1803 & win server 2019
decoder-it/Hyper-V-admin-EOP
Small POC in powershell exploiting hardlinks during the VM deletion process
decoder-it/psportfwd
a simple portforwarder in ps1 with embeded c# code
decoder-it/NetworkServiceExploit
POC for NetworkService PrivEsc
decoder-it/juicy-potato
A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts to NT AUTHORITY\SYSTEM.
decoder-it/whoami-priv-Hackinparis2019
Slides from my talk in "Hackinparis" 2019 edition
decoder-it/Troopers24
decoder-it/RelabelAbuse
decoder-it/CreateTokenExample
decoder-it/audi_connect_ha
Adds an audi connect integration to home assistant
decoder-it/bluehatil22
Slides from out talk at BH IL 2022
decoder-it/powershellveryless
Constrained Language Mode + AMSI bypass all in one
decoder-it/JuicyPotatoNG
Another Windows Local Privilege Escalation from Service Account to System
decoder-it/TestComputerSpnDNS
Simple powershell script to tests for "GHOST" SPN's
decoder-it/DFSCoerce-exe-2
DFSCoerce exe revisited version with custom authentication
decoder-it/pipeserverimpersonate
named pipe server with impersonation
decoder-it/whoami-priv-slides-budapest-2019
decoder-it/diaghub_exploit
Simplified version of Forshaw's Diaghub Collector Exploit