
SpyPhone
This project shows the kind of data a rogue iPhone application can collect.

This project shows the kind of data a rogue iPhone application can collect.

The following is the outcome of playing with CVE-2020-1472 and attempting to automate the process of gaining a shell on the DC

End-to-end Domain Controller exploitation using Metasploit and Impacket: discovered DC10, exploited Zerologon (CVE-2020-1472), extracted NTLM hashes,…

Proof-of-concept exploit for CVE-2024-4879, a Jelly template injection vulnerability in ServiceNow enabling unauthenticated remote code execution.…

Exploit for Adobe Acrobat Reader DC heap buffer overflow (CVE-2021-39863) with ASLR/DEP bypass, including root cause analysis and reversed vulnerable…

Exploit for CVE-2024-4879 affecting Vancouver, Washington DC Now and Utah Platform releases

A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-1…