
PenBox
PenBox - A Penetration Testing Framework - The Tool With All The Tools , The Hacker's Repo

PenBox - A Penetration Testing Framework - The Tool With All The Tools , The Hacker's Repo

OS command injection vulnerability in Dynatrace ActiveGate ping extension up to 1.016 via crafted ip address

Full penetration test report against `IP` (Ubuntu VM). Attack chain: directory enumeration → backup file discovery → password cracking → CMS file…

A collection of scripts which may come in handy during your freedom fighting activities.

[unmaintained] Post-exploitation tool

Modular Python3 attack framework for automating exploitation of SIEM platforms (Splunk, Graylog, OSSIM, QRadar, McAfee) via credential theft, payload…

A PoC exploit for CVE-2022-41622 - a CSRF in F5 BIG-IP control plane that leads to remote root

Kioptrix Level 1 writeup - CVE-2003-0201 Samba trans2open

HackTheBox TwoMillion machine writeup — API abuse, command injection & CVE-2023-0386

Structured HTB walkthrough demonstrating Shellshock (CVE-2014-6271) exploitation via CGI directory fuzzing and privilege escalation through…

A detailed penetration testing walkthrough and exploitation report for the 'Portal' machine, focusing on CVE-2011-2523 (vsFTPd 2.3.4 Backdoor) to…

Exploit script for CVE-2020-1472 (ZeroLogon) with automated privilege escalation, credential dumping via secretsdump, and lateral movement using…

Targeted evil twin attacks against WPA2-Enterprise networks. Indirect wireless pivots using hostile portal attacks.

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

The Shadow Attack Framework

RunasCs - Csharp and open version of windows builtin runas.exe

Stop Windows Defender programmatically

Get file less command execution for lateral movement.