
CVE-2026-48907
Python CLI that exploits CVE-2026-48907 in Joomla JCE via profile-import upload, verifies shell paths, and opens an interactive command channel on…

Python CLI that exploits CVE-2026-48907 in Joomla JCE via profile-import upload, verifies shell paths, and opens an interactive command channel on…

About 2026 Guide: Bypass User Account Control Prompts on Windows 11

A command-line utility for Windows written in C that creates and configures persistent Event Tracing for Windows (ETW) AutoLogger sessions.

A command-line utility to exploit Android Zygote injection (CVE-2024-31317)

This C# tool sprays for admin access over the entire domain

A C# utility for interacting with SCOM

PoC for CVE-2024-48990

PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads

This is an alternative poc for the CVE-2024-32019 written in python

RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging

ACEshark is a utility designed for rapid extraction and analysis of Windows service configurations and Access Control Entries, eliminating the need…

RunasCs - Csharp and open version of windows builtin runas.exe

Windows token manipulation utility that lists, steals, and impersonates process or user tokens to execute commands as other users, leveraging…

A small utility to translate NTDS.dit files to SQLite format.

Offline command line lookup utility for GTFOBins (https://github.com/GTFOBins/GTFOBins.github.io), LOLBAS (https://github.com/LOLBAS-Project/LOLBAS),…

Command-line utility for Windows that enables SeTakeOwnershipPrivilege and modifies file ownership to the current user, granting access to otherwise…

Penetration testing utility and antivirus assessment tool.

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…