{"repo":"S3cur3Th1sSh1t/WinPwn","free":true,"listed":false,"github":"https://github.com/S3cur3Th1sSh1t/WinPwn","clone":"git clone https://github.com/S3cur3Th1sSh1t/WinPwn.git","description":"Automation for internal Windows Penetrationtest / AD-Security","language":"PowerShell","stars":3691,"topics":["pentesting","automation","adsecurity","privilege-escalation","powersploit","pentest-tool","exploitation","recon","redteam","powershell"],"license":"BSD-3-Clause","category":"workflow-automation","readme_excerpt":"Sponsored by &emsp; &emsp; &emsp; WinPwn In many past internal penetration tests I often had problems with the existing Powershell Recon / Exploitation scripts due to missing proxy support. I also often ran the same scripts one after the other to get information about the current system and/or the domain. To automate as many internal penetrationtest processes (reconnaissance as well as exploitation) and for the proxy reason I wrote my own script with automatic proxy recognition and integration. The script is mostly based on well-known large other offensive security Powershell projects. Any suggestions, feedback, Pull requests and comments are welcome! Just Import the Modules with: Import-Module .\\WinPwn.ps1 or iex(new-object net.webclient).downloadstring('https://raw.githubusercontent.com/S3cur3Th1sSh1t/WinPwn/master/WinPwn.ps1') To bypass AMSI take one of the existing bypass techniques, find the AMSI trigger and manually change it in the bypass function or encode the trigger string. Alternatively obfuscate the whole script. If you find yourself stuck on a windows system with no internet access - no problem at all, just use Offline Winpwn.ps1 , the most important scripts and executables are included. Functions available after Import: #### WinPwn - Menu to choose attacks: #### Inveigh - Executes Inveigh in a new Console window , SMB-Relay attacks with Session management (Invoke-TheHash) integrated #### SessionGopher - Executes Sessiongopher Asking you for parameters #### Kitti","default_branch":null,"files":null,"tree":[],"storefront":"/r/S3cur3Th1sSh1t","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/S3cur3Th1sSh1t/WinPwn/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}