
sqlwinds
SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit

SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit
mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

In-target C# post-exploitation tool for Microsoft SQL Server (MS SQL / MSSQL) traversing linked-server chains of any depth with cascading login…

Advisory and technical write-up for CVE-2026-18782, a critical SQL injection in TREX MES web API endpoints enabling auth bypass, data theft, and RCE…

Practical MSSQL penetration testing cheat sheet covering enumeration, linked-server pivoting, privilege escalation, persistence, and command…

Curated repository of CVEs with PoCs, articles, and detailed descriptions for vulnerability research and exploitation.

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

Advanced MSSQL penetration testing tool for lateral movement, command execution, NTLM relay, and brute-force attacks via linked servers and multiple…

MSSQL client for SCCM environments, enabling reconnaissance, remote PowerShell execution on managed clients, and extraction of sensitive secrets such…

mssql 终端连接工具|命令执行