
CVE-2022-26923
Exploitation de CVE-2022-26923

Exploitation de CVE-2022-26923

Powershell tool to automate Active Directory enumeration.

Penetration tests guide based on OWASP including test cases, resources and examples.

A web-based RDP client

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

SSH HARDENING

A little tool for detecting suspicious privileged NTLM connections, in particular Pass-The-Hash attack, based on event viewer logs.

Knocker, a knock based access control service for your homelab

Detects the algorithm of input JWT Token and provide options to generate the new JWT token based on the user selected algorithm.

Python PoC demonstrating CVE-2026-22002 VNC authentication bypass by forcing protocol version downgrade to RFB 3.3, including a simulated vulnerable…

An LDAP based Active Directory user and group enumeration tool

A Powershell implementation of PrivExchange designed to run under the current user's context

CyberArk Security Audit

Terminal-based encrypted messenger with post-quantum cryptography, Double Ratchet protocol, and Tor anonymity. Features duress passphrase, deniable…

Exploitation for CVE-2022-26923

Vatilon-based IP camera firmware allows authentication bypass and plaintext credential exposure via web.cgi API requests.

FIPS 140-3 compliant VPN kernel module and user tool, drop-in replacement for WireGuard with AES-256-GCM, SHA2-256, and SECP256R1 cryptography for…

Dahua IP camera CVE research toolkit (CVE-2021-33044/33045, CVE-2025-31700/31701)