
acltoolkit
Active Directory ACL abuse toolkit for privilege escalation, DCSync, object ownership modification, and lateral movement via logon script…

Active Directory ACL abuse toolkit for privilege escalation, DCSync, object ownership modification, and lateral movement via logon script…

Automated exploit script combining CVE-2020-1472 (ZeroLogon) with evil-winrm to gain a remote shell on vulnerable Windows Domain Controllers.

Weaponizing to get NT SYSTEM for Privileged Directory Creation Bugs with Windows Error Reporting

PowerShell-based reverse shell with background task execution, file transfer, and dual persistence mechanisms via registry and startup folder for red…

Get file less command execution for lateral movement.

COFF file (BOF) for managing Kerberos tickets.

Automatically spawn a reverse shell fully interactive for Linux or Windows victim

Kautilya - Tool for easy use of Human Interface Devices for offensive security and penetration testing.

POC code for CVE-2020-3153 - Cisco anyconnect path traversal vulnerability

Authenticated command injection exploit for QuickBox Pro v2.1.8, providing remote code execution as www-data and privilege escalation to root via…

Proof-of-concept exploit for CVE-2021-21300, demonstrating remote code execution via malicious git repository cloning with symlink and filter abuse…

Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched

Get teamviewer's ID and password from a remote computer in the LAN

Different methods to get current username without using whoami

Windows privilege-escalation exploit abusing SeImpersonate via DiagTrack RPC, using Secondary Logon to get an INTERACTIVE token and gain SYSTEM.

Pentestmonkeys' PHP reverse shell with dynamic host and port passing through GET request parameters

This is just a quick note on how to exploit these vulnerabilities to get root.

Modify version of impacket wmiexec.py, get output(data,response) from registry, don't need SMB connection, also bypassing antivirus-software in…