Russia

Michael Zhmaylo

Expert
@MzHmO

Follow me and check my links!

Exploit-Street. Complete list of LPE exploits for Windows (starting from 2023)

957

PowershellKerberos. Some scripts to abuse kerberos using Powershell

364

LeakedWallpaper. Leak of any user's NetNTLM hash. Fixed in KB5040434

262

NtlmThief. Extracting NetNTLM without touching lsass.exe

245

Parasite-Invoke. Hide your P/Invoke signatures through other people's signed assemblies

217

TGSThief. My implementation of the GIUDA project in C++

190

psexec_noinstall. Repository contains psexec, which will help to exploit the forgotten pipe

173

SymProcAddress. Zero EAT touch way to retrieve function addresses (GetProcAddress on steroids)

147

WhoIsWho. Amazing whoami alternatives

142

Privileger. Privileger is a tool to work with Windows Privileges

139

DebugAmsi. DebugAmsi is another way to bypass AMSI through the Windows process debugger mechanism.

103

articles. Python

47

USB-Monitor. USB Monitor is a simple C# program that uses WMI to track information about newly connected and disconnected USB devices

23

PPLDescribe. Tool for obtaining information about PPL processes

16

WinCOMFuzzer. Component Object Model fuzzing

11

MemoryRegions. These are additional files to my paper about memory regions

10

DescribeTicket. Modified Version Of Describe Ticket with showing session key

7

ADCSCoercePotato. No creds needed...

7

rsockstun. reverse socks tunneler with ntlm and proxy support

6

rsockspipe. Tool for pivoting over SMB pipes

6

DomainPasswordSpray-BH-Integration. DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAREFUL NOT TO LOCKOUT ACCOUNTS!

5

CrackMapExec. A swiss army knife for pentesting networks

4

NetExec. The Network Execution Tool

3

Sploit2Me. Автоматическое уведомление пользователей о появившихся уязвимостях в Telegram посредством извлечения данных с БДУ ФСТЭК

3

NovellaUrfu.

3

FormThief. Spoofing desktop login applications with WinForms and WPF

3

Link2Work. URFU Digital Portfolio 2024 Project

2

impacket-programming-manual. impacket编程手册

2

MzHmO.

2

Invoke-DOSfuscation. PowerShell

1

profiler-lateral-movement. Lateral Movement via the .NET Profiler

1
31
Apply