top of page

Changes is the only thing which never change
IT news & Information Technology Comparison
Privilege Escalation tools
WinPEAS Windows privilege escalation linux-smart-enumeration Linux privilege escalation Certify Active directory privilege escalation...


BeRoot
BeRoot Project is a post exploitation tool to check common misconfigurations to find a way to escalate our privilege. The goal of BeRoot...


ADFSDump
A C# tool to dump all sorts of goodies from AD FS. Created by Doug Bienstock @doughsec while at Mandiant FireEye. This tool is designed...


ImpulsiveDLLHijack
A C# based tool that automates the process of discovering and exploiting DLL Hijacks in target binaries. The discovered Hijacked paths...


Watson
Watson is a .NET tool designed to enumerate missing KBs and suggest exploits for Privilege Escalation vulnerabilities. Great for...


Sherlock
PowerShell script to quickly find missing software patches for local privilege escalation vulnerabilities. Supports: MS10-015 : User Mode...


Get-GPPPassword
Get-GPPPassword is a PowerShell script part of the PowerSploit toolkit, it is designed to retrieve passwords for local accounts that are...


Certify
Certify is a C# tool to enumerate and abuse misconfigurations in Active Directory Certificate Services (AD CS). Certify is designed to be...


linux-smart-enumeration
Linux smart enumeration is another good, less verbose, linux privesc tool for Linux. Install + Usage: curl "https://github.com/diego-trei...


WinPEAS
WinPEAS is a nice verbose privilege escalation for finding local privesc routes on Windows endpoints. Install + Usage: $wp...


LinPEAS
LinPEAS is a nice verbose privilege escalation for finding local privesc routes on Linux endpoints. Install + Usage: curl -L...


ligolo-ng
Ligolo-ng is a simple, lightweight and fast tool that allows pentesters to establish tunnels from a reverse TCP/TLS connection using a...


SharPersist
A Windows persistence toolkit written in C#. The project has a wiki . Install: (Binary) You can find the most recent release here ....


Empire
Empire is a post-exploitation framework that allows you to generate payloads for establishing remote connections with victim systems....


Impacket
Impacket provides a set of low-level Python bindings for various network protocols, including SMB, Kerberos, and LDAP, as well as...
bottom of page