Skip to main content

Devious-WinRM

A Pentester's Powershell Client.

The help screen for Devious-WinRM, showing a variety of flags and options.

Highlight Features

Zero-confing Kerberos

Devious-WinRM's initial reason for creation was due to how complicated Kerberos auth can be. With Devious-WinRM, on most operating systems, it is as simple as appending the -k flag to the command line. Devious-WinRM will automatically handle the rest.

Easy in-memory .NET execution

Any .NET binary can be ran directly in the Powershell process' memory using the invoke command, usually bypassing AV detection. It's quick-and-easy way to covertly execute binaries without touching disk.

Local token upgrader

Some commands, such as Get-Service or qwinsta will fail to execute via WinRM due to a permission error. Devious-WinRM leverages RunasCs for an effortless way to get around this limitation of WinRM. Simply prepending the desired command with localexec will work.

Installation

Check out the Installation Guide for instructions. TLDR: uv tool install devious-winrm

Wiki

The Usage Guide has extensive documentation on every single feature and command.

Star History

Star History Chart

Credits

  • Evil-WinRM - This goes without saying, but Evil-WinRM is an incredible tool. It was the primary inspiration for this project.
  • pypsrp - A tremendously well-featured library for Powershell Remote in Python. Super friendly developer as well!
  • evil-winrm-py - Aditya and I had the same idea at almost the exact same time. I would be remissed if I didn't mention his project as well.
  • RunasCs - Used for the local token upgrader. Super useful tool when doing work over WinRM.

Metadata

Release files for Devious-WinRM 1.2.2

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for Devious-WinRM 1.2.2
File Size Uploaded
devious_winrm-1.2.2.tar.gz 59.4 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for Devious-WinRM 1.2.2
File Interpreter ABI Platform
devious_winrm-1.2.2-py3-none-any.whl Python 3 none any Details

Total release size: 126.4 kB

Release files / devious_winrm-1.2.2.tar.gz

Download URL devious_winrm-1.2.2.tar.gz
Size 59.4 kB
Tags Source
SHA-256 checksum
How to use checksums
72a6e83c76f1201d38ba792bc50f29f6be98f32cc657c7ee408106f9c2e1f76f
BLAKE2b-256 checksum
How to use checksums
6ec2f7e5b571a200050c3b17746278ae78d9466ad449e9c1be5f81e8ee1c493c
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via uv/0.9.10 {"installer":{"name":"uv","version":"0.9.10"},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Arch Linux","version":null,"id":null,"libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":null}

Release files / devious_winrm-1.2.2-py3-none-any.whl

Download URL devious_winrm-1.2.2-py3-none-any.whl
Size 67.0 kB
Tags Python 3
SHA-256 checksum
How to use checksums
0dd5639597050d5da1d8bf873e753368780180313441bc9838fad2391a25902e
BLAKE2b-256 checksum
How to use checksums
8acb5be29302c161c84b94df8e99aa2e3bcb4959f250f985cd6c9b4da4efd7e8
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via uv/0.9.10 {"installer":{"name":"uv","version":"0.9.10"},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Arch Linux","version":null,"id":null,"libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":null}

Release history Release notifications | RSS feed

This release

1.2.2 This release

2 release files

1.2.1

2 release files

1.2.0

2 release files

1.1.1

2 release files

1.1.0

2 release files

1.0.3

2 release files

1.0.2

3 release files

1.0.1

2 release files

1.0.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page