
smbeagle
SMBeagle - Fileshare auditing tool.

SMBeagle - Fileshare auditing tool.

Harvests NetNTLM hashes in Windows domains via a local WebDAV server, with LNK file poisoning and Office document field code injection for lateral…

From deobfuscating code.js to root, CVE-2023-0386

Proof-of-concept for CVE-2024-37726: local privilege escalation in MSI Center via arbitrary file overwrite using symlink/junction attacks and OpLock…

Proof of Concept for EFSRPC Arbitrary File Upload (CVE-2021-43893)

Arbitrary file read exploit for the Windows UPnP Device Host service.

POC exploit for CVE-2026-25895 FUXA Unauthenticated Path Traversal -> Arbitrary File Write -> RCE

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

Proof-of-concept exploit for CVE-2024-31771 demonstrating arbitrary file write in TotalAV via symbolic link attack, enabling DLL planting and SYSTEM…

My experiments in weaponizing Nim (https://nim-lang.org/)

Better Remote Access Trojan

Single-file HTML cheat sheet for red teamers and pentesters with auto-injecting attacker/target variables, OS-aware reverse shell generator, and…

CVE-2025-27591 – Meta below symlink following local privilege escalation (HackTheBox CTF)

Tunnel TCP connections through a file

POCs for CVE-2025-50154 and CVE-2025-59214, zero day vulnerabilities on windows file explorer disclosing NTLMv2-SSP without user interaction. It is a…

Proof-of-concept exploit for CVE-2024-24919, an unauthenticated file read in Check Point Security Gateways; scans single or multiple IP targets and…

Single-script exploit for CVE-2026-44881 that chains .git credential leakage, Portainer Git-symlink injection, arbitrary host file read, and SSH…