
CVE-2018-15473-py3
Python3 exploit for CVE-2018-15473 that enumerates valid usernames on OpenSSH servers via timing-based authentication analysis.

Python3 exploit for CVE-2018-15473 that enumerates valid usernames on OpenSSH servers via timing-based authentication analysis.

Proof-of-concept demonstrating lack of rate limiting on the Sylius v2.0.2 login endpoint, enabling unrestricted automated authentication attempts.

It is possible to enumerate valid usernames on the login page.

Execute commands interactively on remote Windows machines using the WinRM protocol (just faster)

Protect your SSH keys with your Mac's Secure Enclave

Trying to tame the three-headed dog.

Mimikatz implementation in pure Python

Single Packet Authorization > Port Knocking

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

Pass the Hash to a named pipe for token Impersonation


Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)

NetScaler ADC/Gateway SAML unsigned-assertion bypass via HTTP-Redirect binding (CTX696939) - root cause analysis + PoC

PoC for CVE-2019-12476, a Windows authentication bypass in ManageEngine ADSelfService Plus that provides an unauthenticated SYSTEM shell via crafted…

Authentication Bypass Vulnerability — CVE-2024–4358 — Telerik Report Server 2024

Proof-of-concept exploit for CVE-2024-28987 targeting SolarWinds Web Help Desk hardcoded credential vulnerability. Automates exploitation via URL…

A small docker lab to play with cve-2026-24061, the inetutils-telnetd authentication bypass.

secure vault for your files