
CVEs
Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs

Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs

Agentic pentest profile for Hermes: 31 playbooks for authorised recon, web/access-control attacks, safe exploit validation, and evidence-driven…

This application gives Mac users in enterprise environments control over the administration of their machines by elevating their access level to…

C# tool for enumerating and exploiting misconfigurations in Active Directory Certificate Services (AD CS), enabling certificate template abuse,…

Open-source tool to bypass windows and linux passwords from bootable usb

A tool to scan Kubernetes cluster for risky permissions

CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.

A tool to extract the IdP cert from vCenter backups and log in as Administrator

A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It…

BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.

Exploit for CVE-2020-3952 in vCenter 6.7

DLL Injection tool to unlock guest VMs

POC tool for ResetNightmare (CVE-2026-27912)

SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens

A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA server using…

Office Anywhere网络智能办公系统

In-memory token vault BOF for Cobalt Strike