
CVE-2022-26923
Exploitation de CVE-2022-26923

Exploitation de CVE-2022-26923

PowerShell Pass The Hash Utils

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

Pass the Hash to a named pipe for token Impersonation

DLL that hooks NTLM and Kerberos authentication in lsass.exe to inject a backdoor hash, enabling persistent authenticated access on Windows systems.

Check-LocalAdminHash is a PowerShell tool that attempts to authenticate to multiple hosts over either WMI or SMB using a password hash to determine…

Pass the Hash to a named pipe for token Impersonation

👻 CVE-2026-54121 - Best CertiGhost AD CS Multi-Exploit Framework | Advanced toolkit with rogue DC/LDAP servers, certificate abuse, PKINIT hash…

SMB Red Team Lab— NTLM Relay via LLMNR Poisoning, CVE-2007-2447, NTLMv2 Hash Cracking & NT AUTHORITY\SYSTEM on Windows 10

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Exploiting Parsec for Windows to gain SYSTEM privileges


Modified version of the passing-the-hash tool collection made to work straight out of the box

RedSnarf is a pen-testing / red-teaming tool for Windows environments