
exploits
Public exploit repository covering local privilege escalation, buffer overflows, and database exploits across Linux, Solaris, AIX, OpenBSD, Zyxel,…

Public exploit repository covering local privilege escalation, buffer overflows, and database exploits across Linux, Solaris, AIX, OpenBSD, Zyxel,…

LSTAR - CobaltStrike 综合后渗透插件

A standalone python script which utilizes python's built-in modules to enumerate SUID binaries, separate default binaries from custom binaries,…

A Bash script that downloads and unzips scripts that will aid with privilege escalation on a Linux system.

Enumerate and attack Active Directory with LDAP session persistence, ACL abuse, Kerberoasting/ASREProasting, shadow credentials, RBCD, and NTLM relay.

Information released publicly by NCC Group's Full Spectrum Attack Simulation (FSAS) team.

Interactive shell for Active Directory enumeration and ACL abuse via LDAP/LDAPS. Supports DCSync, RBCD, Shadow Credentials, password changes, and…

Collection of PowerShell functions a Red Teamer may use in an engagement

A script to enumerate Google Storage buckets, determine what access you have to them, and determine if they can be privilege escalated.

iOS gamed exploit (fixed in 15.0.2)

PXEThief is a set of tooling that can extract passwords from the Operating System Deployment functionality in Microsoft Endpoint Configuration Manager

Proof-of-Concept tool for extracting credential material from protected sessions on modern Windows systems.

Red Team PowerShell Script

Malicious WMI Events using PowerShell

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

Active Directory information dumper via ADWS for evasion purposes.

.NET-based Active Directory enumeration tool inspired by PowerView. Enumerates domains, users, computers, groups, shares, and sessions. Supports LDAP…

n8n Ni8mare - Unauthenticated Arbitrary File Read to RCE Chain (CVSS 10.0)