
GoAWSConsoleSpray
Tool to spray AWS Console IAM Logins

Tool to spray AWS Console IAM Logins

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

Password spraying using AWS Lambda for IP rotation

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.

POC tool for ResetNightmare (CVE-2026-27912)

CaptainCredz is a modular and discreet password-spraying tool.

POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln

SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens

Writeup of CVE-2020-15906

Deployable AWS-hosted Active Directory pentest lab with domain controller and vulnerable MSSQL; practice S4U2Self abuse, SQL brute force, and RCE.

AuthBypass & Auto Backdooring Devices

Exploit for CVE-2025-47227 - ScriptCase Password Reset (Pre-Auth)

PoC for CVE-2026-27912 - Windows Kerberos Elevation of Privilege (ResetNightmare). Unauthorized password reset via Kerberos flaw. For security…

Alibab-Nacos-Unauthorized-Reset PWD

PoC exploit for CVE-2026-10580 - Authentication Bypass in Hippoo Mobile App for WooCommerce <= 1.9.4 leading to Admin Account Takeover

Use CVE-2026-46333 and CVE-2026-31431 to change any user's password.

WordPress Plugin Digits < 8.4.6.1 - OTP Auth Bypass via Bruteforce (CVE-2025-4094)

eScan Management Console version 14.0.1400.2281 contains privilege escalation via `GetUserCurrentPwd` function lets attackers retrieve any user's…