Establishes a Remote Desktop session (RDP) with the specified hosts and sends key presses to launch the accessibility tools within the Windows Login screen. Analyzes the console and alerts if a command prompt window opens up. Screenshots are saved in a folder ('./rdp-screenshots' by default) and screenshots with a cmd.exe window are saved in a subfolder ('./rdp-screenshots/discovered' by default). Accepts a single host or a list of hosts, delimited by line and works with multiple hosts in parallel. Incorporates code from Zach Grace's sticky_keys_hunter DEFCON24 Presentation Slides.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A domain reconnaissance tool that automates subdomain discovery, port scanning, and monitoring with support for multiple data sources and notification integrations.
BeEF is a specialized penetration testing tool for exploiting web browser vulnerabilities to assess security.
A full-featured reconnaissance framework for web-based reconnaissance with a modular design.
A COM Command & Control framework using JScript for stealthy and flexible command and control capabilities on Windows systems.
A collection of resources for practicing penetration testing
A penetration testing tool for intercepting SSH connections and logging plaintext passwords.
Charlotte is an undetected C++ shellcode launcher for executing shellcode with stealth.
A Linux-based environment for penetration testing and vulnerability exploitation
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.