
RegPwnBRc4BOF
Brute Ratel C4 BOF that exploits a registry symlink race condition in Windows Accessibility ATConfig to escalate privileges to SYSTEM by writing…

Brute Ratel C4 BOF that exploits a registry symlink race condition in Windows Accessibility ATConfig to escalate privileges to SYSTEM by writing…

OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

Deployable AWS-hosted Active Directory pentest lab with domain controller and vulnerable MSSQL; practice S4U2Self abuse, SQL brute force, and RCE.

unauthenticated RCE in WordPress core (CVE-2026-63030 + CVE-2026-60137)

cve-2020-1472 复现利用及其exp

Full penetration testing workflow: credential brute force, SSH access and privilege escalation (CVE-2021-4034)


A simple implementation/code smash of a bunch of other repos

Black-box penetration test against HackSudo Thor : CVE-2014-6271 Shellshock RCE through Apache mod_cgi, chained with sudo misconfiguration and bash…

Automated exploit script combining CVE-2020-1472 (ZeroLogon) with evil-winrm to gain a remote shell on vulnerable Windows Domain Controllers.

Exploit for CVE-2014-4210 targeting WebLogic deserialization, with post-exploitation features including ransomware deployment, C2 integration, and…

cve-2020-1472_Tool collection

Payload for teensy like a rubber ducky but the syntax is different. this Human interfaes device ( HID attacks ). Penetration With Teensy . Brutal is…

RedSnarf is a pen-testing / red-teaming tool for Windows environments

Detect and abuse risky SPNs

Determine privileges from cloud credentials via brute-force testing.

Crack any Microsoft Windows users password without any privilege (Guest account included)