
ldapnomnom
Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (cLDAP)

Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (cLDAP)

Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

Take security by obscurity to the next level (this is a bad idea, don't really use this please)

Find authentication (authn) and authorization (authz) security bugs in web application routes.

CentOS Control Web Panel, Root Privilege Escalation

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

CaptainCredz is a modular and discreet password-spraying tool.

WPBookit <= 1.0.6 - Unauthenticated Stored Cross-Site Scripting

Proof-of-concept exploit for CVE-2017-14263 in Honeywell NVR devices. Demonstrates session hijacking and privilege escalation from guest to admin via…

Enumerate information from NTLM authentication enabled web endpoints 🔎

Proof-of-concept exploit for an unauthenticated root authentication bypass in Proxmox VE 7.0-8.0.3, intended for authorized security testing and…

Technical breakdown of CVE-2026-34472, an auth bypass via leaked credentials affecting ZTE H188A routers.

RCE for WingFTP v4.7.3