
CVE-2025-26264
CVE-2025-26264 - GeoVision GV-ASWeb with the version 6.1.2.0 or less, contains a Remote Code Execution (RCE) vulnerability within its Notification…

CVE-2025-26264 - GeoVision GV-ASWeb with the version 6.1.2.0 or less, contains a Remote Code Execution (RCE) vulnerability within its Notification…

Manipulating and Abusing Windows Access Tokens.

RunasCs - Csharp and open version of windows builtin runas.exe

Remote operations commands implemented using Beacon Object Files

Infect Shared Files In Memory for Lateral Movement

A windows token impersonation tool

Programmatically start WebClient from an unprivileged session to enable that juicy privesc.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Rusty Impersonate

Ask a TGS on behalf of another user without password

Lateral Movement Using DCOM and DLL Hijacking

Some scripts to abuse kerberos using Powershell


BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it