
CVE-2024-43451-POC
CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts.

CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts.

Python Remote Administration Tool (RAT)

Cromos is a tool for downloading legitimate extensions of the Chrome Web Store and inject codes in the background of the application.

PowerShell Script to Dump Windows Credentials from the Credential Manager

Manage and recover BitLocker encrypted drives with this tool for Windows 11 recovery key management and educational study of CVE-2026-45585.

A little tool to play with Windows security

A simple Toolkit to BF and decrypt Windows EntraId CacheData

Windows passwords decryption from dump files

Generates a ZIP file exploiting CVE-2025-24071 to capture netNTLMv2 credentials from Windows Explorer via malicious .library-ms files, intended for…

Tool to remotely dump secrets from the Windows registry

a tool to manipulate dcc(domain cached credentials) in windows registry, based mainly on the work of mimikatz and impacket

This is a python PoC scripts for CVE-2025-24071 which is a vulnerability in Windows File Explorer that allows unauthorized access to sensitive…

Automated exploit script combining CVE-2020-1472 (ZeroLogon) with evil-winrm to gain a remote shell on vulnerable Windows Domain Controllers.

The Shadow Attack Framework

Windows File Explorer Zero Click NTLMv2-SSP Hash Disclosure

Building an Active Directory domain and hacking it

CVE-2025-24071 Proof Of Concept

Proof-of-concept decrypting Araxis Merge's DPAPI-protected server credentials (CVE-2026-92680), demonstrating insufficiently protected credential…