
ghostlock-s26
GhostLock (CVE-2026-43499) app for the Galaxy S26 series

GhostLock (CVE-2026-43499) app for the Galaxy S26 series

Exploit for CVE-2020-1472 (ZeroLogon) that resets the domain controller account password and enables DCSync for full domain compromise.

Tools and Techniques for Red Team / Penetration Testing

PoC for Zerologon - all research credits go to Tom Tervoort of Secura

A stealthy Python based Windows backdoor that uses Github as a command and control server

Windows常用程序密码读取工具:SharpDecryptPwd

Cracking BitLocker encryption based on CVE-2023-21563 vulnerability

GitHub Actions Pipeline Enumeration and Attack Tool

yet another sleep encryption thing. also used the default github repo name for this one.

A stealthy stager designed for shellcode payloads staged with http/https like Sliver, or on github raw.

Github as C2 Demonstration , free API = free C2 Infrastructure

GitHub Self-Hosted Runner Enumeration and Attack Tool

PoC for Zerologon (CVE-2020-1472) - Exploit

Python exploit for CVE-2020-1472 (Zerologon) that changes a domain controller's machine account password, enabling DCSync and full domain compromise.…

Exploit for CVE-2020-1472 (ZeroLogon) that changes a domain controller's machine account password, enabling DCSync and full domain compromise.…

https://github.com/dirkjanm/CVE-2020-1472

Proof-of-concept exploit for CVE-2020-1472 (ZeroLogon) that changes the domain controller machine account password, enabling DCSync and full domain…

Proof-of-concept exploit for CVE-2020-1472 (ZeroLogon) that changes the domain controller's machine account password, enabling DCSync and full domain…