
CVE-2026-54121-CertiGhost
CVE-2026-54121 (Certighost) AD CS DC-impersonation PoC. Patched SAN handling + MAQ-safe account reuse.

CVE-2026-54121 (Certighost) AD CS DC-impersonation PoC. Patched SAN handling + MAQ-safe account reuse.

Improved Metasploit module for CVE-2013-6117 (Dahua DVR authentication bypass)

C# tool for enumerating and exploiting misconfigurations in Active Directory Certificate Services (AD CS), enabling certificate template abuse,…

This application gives Mac users in enterprise environments control over the administration of their machines by elevating their access level to…

CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.

Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs

A tool to scan Kubernetes cluster for risky permissions

CVE-2026-41940 — cPanel & WHM Authentication Bypass via Session-File CRLF Injection

A tool to extract the IdP cert from vCenter backups and log in as Administrator

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.

Exploit for CVE-2020-3952 in vCenter 6.7

DLL Injection tool to unlock guest VMs

POC tool for ResetNightmare (CVE-2026-27912)

A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It…

BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

CVE-2018-10933 very simple POC

Exploit script for CVE-2024-1708 and CVE-2024-1709 in ConnectWise ScreenConnect, enabling authentication bypass and remote code execution with user…

Office Anywhere网络智能办公系统