
vmware_vcenter_cve_2020_3952
Exploit for CVE-2020-3952 in vCenter 6.7

Exploit for CVE-2020-3952 in vCenter 6.7

DLL Injection tool to unlock guest VMs

Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.

Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

Secure agents in seconds with permissions enforced at runtime.

Peer-to-peer code collaboration and publishing stack with a secure, decentralized protocol, CLI tool, and network daemon for sovereign code forges.

BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln

Signtool for expired certificates

CVE-2018-10933 very simple POC

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.

Chrome extension that uses vulnerabilities CVE-2021-33044 and CVE-2021-33045 to log in to Dahua cameras without authentication.

CVE-2024-27198 & CVE-2024-27199 Authentication Bypass --> RCE in JetBrains TeamCity Pre-2023.11.4

Agentic AI memory with Ebbinghaus forgetting curve decay. +16pp better recall than Mem0 on LoCoMo.

A framework for creating smart cards (ICC-based cards with contacts).

Exploit script for CVE-2024-1708 and CVE-2024-1709 in ConnectWise ScreenConnect, enabling authentication bypass and remote code execution with user…

Agentic pentest profile for Hermes: 31 playbooks for authorised recon, web/access-control attacks, safe exploit validation, and evidence-driven…

This repository discloses a server-side authorization bypass in Instagram, which allowed unauthenticated access to private timelines; it seems likely…