
CVE-2026-18366
Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator

Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator

Exploits WordPress pre-auth XSS (CVE-2026-64638) to achieve remote code execution, installing an AES-encrypted backdoor webshell with persistence,…

Exploits CouchDB CVE-2017-12635/12636 for privilege escalation and RCE, then provides an interactive shell with command execution, database browsing,…

C# Utilities for Windows Notification Facility

Retrieve AD accounts description and search for password in it

Source Code Management Attack Toolkit

Enumerate and attack Active Directory with LDAP session persistence, ACL abuse, Kerberoasting/ASREProasting, shadow credentials, RBCD, and NTLM relay.

Microsoft Signed PowerShell scripts

Various Cobalt Strike BOFs

A care package of useful bofs for red team engagments

AAD related enumeration in Nim

Modern tactical exploitation toolkit.

Simple BOF to read the protection level of a process

A LAPS dumper written using the impacket library.

New generation of wmiexec.py

PowerShell rebuilt in C# for Red Teaming purposes

Notes about attacking Jenkins servers