
log4shell-finder
Fastest filesystem scanner for log4shell (CVE-2021-44228, CVE-2021-45046) and other vulnerable (CVE-2017-5645, CVE-2019-17571, CVE-2022-23305,…

Fastest filesystem scanner for log4shell (CVE-2021-44228, CVE-2021-45046) and other vulnerable (CVE-2017-5645, CVE-2019-17571, CVE-2022-23305,…

RSA NetWitness Platform EDR Agent / Incorrect Access Control - Code Execution

CVE-2022-25943

A patch for PrintNightmare vulnerability that occurs to print spooler service for Windows machines [CVE-2021-34527]

Scanner: CVE-2026-41091/45498 Microsoft Defender LPE/DoS — Python scanner for Windows Defender privilege escalation (CISA KEV)

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

Vulnerability scanner for Windows containers

Proof-of-concept exploit for CVE-2025-9074 demonstrating container-to-host file write via exposed Docker Engine API on Windows. For authorized…

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

Citrix Workspace app before 1912 for Windows - Privilege Escalation #2

Workaround for Windows Print Spooler Remote Code Execution Vulnerability(CVE-2021-34527). See:…

Clario through 2024-04-11 for Windows Desktop has weak permissions for %PROGRAMDATA%\Clario and tries to load DLLs from there as SYSTEM.

MDE/MDI Defender setup for Ludus

Detailed writeup and step-by-step proof-of-concept for CVE-2020-11107, a Windows XAMPP privilege escalation vulnerability allowing arbitrary command…

Fix WinVerifyTrust Signature Validation Vulnerability, CVE-2013-3900, QID-378332

Curated SIEM queries and techniques for offensive discovery of Windows privilege escalation, misconfigured ACLs, services, scheduled tasks, and…

Windows 11-first educational lab for studying CVE-2025-1974 in ingress-nginx. Provides safe attack emulation and defense validation with local…

Script to update Windows Recovery Environment to patch against CVE-2022-41099