discovered 16 Aug 2026
Win10_LockPicker-by-Infinition
→ View on GitHubWin10 LockPicker is a P4wnP1 A.L.O.A. payload designed to unlock a Windows 10 session without requiring prior knowledge of the user's password. It captures NTLMv2 hashes over poisoned LLMNR/NBT-NS traffic via a spoofed USB network adapter, cracks the hash using John the Ripper, and automatically inputs the recovered password using an HID keyboard. Additionally, it offers an SMB brute force alternative for credential recovery through Metasploit, enhancing its versatility for authorized penetration testing.