
SIGRed
Detection of attempts to exploit Microsoft Windows DNS server via CVE-2020-1350 (AKA SIGRed)

Detection of attempts to exploit Microsoft Windows DNS server via CVE-2020-1350 (AKA SIGRed)

CVE-2020-16899 - Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473

Fuzzing the Microsoft Windows DNS client library. Inspired by CVE-2026-41096.

Tools for the IP over HTTPS (IP-HTTPS) Tunneling Protocol

Microsoft Network Service Fingerprinting Tool

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration

Windows registry mitigation response to CVE-2020-1350

HoneyPoC: Proof-of-Concept (PoC) script to exploit SIGRed (CVE-2020-1350). Achieves Domain Admin on Domain Controllers running Windows Server 2000 up…