
CVE-2025-24071
Dependency-free Python PoC generator for CVE-2025-24071 that crafts a malicious .library-ms file in a ZIP to trigger Windows Explorer NTLM hash…

Dependency-free Python PoC generator for CVE-2025-24071 that crafts a malicious .library-ms file in a ZIP to trigger Windows Explorer NTLM hash…

PoC: changedetection.io unlimited login brute-force, no rate limiting (CVE-2026-71205, Medium 6.5)

Automated NTLM relay attack tool combining Responder poisoning with Impacket relay and secretsdump for credential capture, hash relaying, and lateral…

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

HikVision Auth Bypass CVE, tool is able to extract credentials, and take snapshots based on magic cookie or supplied credentials.

Exploit for CVE-2024-46987 path traversal in Camaleon CMS enabling arbitrary file download and automated SSH key extraction via brute-force.

cve-2016-16113

Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.

Proof-of-concept for CVE-2025-24071, demonstrating NTLM hash leak via crafted .library-ms file in RAR/ZIP archives, triggering SMB authentication on…

Exploited CVE-2025-24071 via SMB by hosting a .library-ms file inside a .tar archive. Using tar x from smbclient, the payload is extracted…

CVE-2025-2539 - WordPress File Away <= 3.9.9.0.1 - Arbitrary File Read

Security Vulnerability Report: CVE-2025-24071 - Windows File Explorer Spoofing Vulnerability

Metasploit module for CVE-2025-24071 - Windows NTLM Hash Leak via .library-ms

Malicious shortcut generator for collecting NTLM hashes from insecure file shares.

Notes about attacking Jenkins servers

A Network Enumeration and Attack Toolset for Windows Active Directory Environments.

Proof-of-concept for CVE-2022-42176: hard-coded credentials in PCSecure configuration file allow local privilege escalation to admin panel and…

COFF file (BOF) for managing Kerberos tickets.