InveighZero is a C# LLMNR/NBNS/mDNS/DNS/DHCPv6 spoofer and man-in-the-middle tool designed to assist penetration testers/red teamers that find themselves limited to a Windows system. This version shares many features with the PowerShell version of Inveigh.
Privileged Mode Features (elevated admin required)
Unprivileged Mode Features
Other Features
Notable Missing Features
Notable Differences
Minimum .NET Version
Parameters
In most cases, when present, the InveighZero parameters mirror Inveigh’s parameters.
Why The Zero In The Name?
Inveigh started as a C# proof of concept before I switched over to PowerShell. The “Zero” is just a reference to the fact that the C# version sort of existed before the PowerShell version. Mainly though, I just needed a unique repo name.
Usage
Inveigh.exe
Inveigh.exe -IP 192.168.1.1
Inveigh.exe -IP 192.168.1.1 -SpooferIP 192.168.1.2
Inveigh.exe -Pcap Y -PcapTCP 80,445
Screenshots
garak checks if an LLM can be made to fail in a way we don't…
Vermilion is a simple and lightweight CLI tool designed for rapid collection, and optional exfiltration…
ADCFFS is a PowerShell script that can be used to exploit the AD CS container…
Tartufo will, by default, scan the entire history of a git repository for any text…
Loco is strongly inspired by Rails. If you know Rails and Rust, you'll feel at…
A data hoarder’s dream come true: bundle any web page into a single HTML file.…