
Invoke-DCSync
Invoke-DCSync

Invoke-DCSync

Apache Tomcat auto WAR deployment & pwning penetration testing tool.

Empire is a PowerShell and Python post-exploitation agent.

Penetration testing utility and antivirus assessment tool.

C# implementation of SMBExec for remote command execution on Windows targets using NTLM password hashes, enabling lateral movement and pass-the-hash…

A "Mishandling of Input to API" or "Exposed Dangerous Method or Function" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure…

This repository contains a proof-of-concept exploit for CVE-2025-48827, a critical authentication bypass vulnerability affecting vBulletin…

Proof-of-concept for CVE-2026-75898, an SSRF in RAGFlow's Invoke component. Demonstrates the vulnerability with unmodified source, includes E2E…

PowerShell exploit for CVE-2021-1675 PrintNightmare that disables AMSI and creates a local administrator account on vulnerable Windows systems.

PowerShell Script to automatically abuse the BadSuccessor vulnerability (CVE-2025-53779)

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

A simple PoC to invoke an encrypted shellcode by using an hidden call

Arbitrary Function Call Exploit using the ThrottleStop driver

Proof of concept for CVE-2020-36708

CVE-2025-54100(PowerShell 远程代码执行漏洞)

Remote code execution (RCE) through insecure deserialization

Proof-of-concept exploit for CVE-2024-4577, a PHP CGI argument injection vulnerability enabling remote code execution via crafted HTTP requests.