
iam-vulnerable
Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.

Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.

Scanner for vScalation (CVE-2021-22015) a Local Privilege Escalation in VMWare vCenter

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

C# tool for enumerating and exploiting misconfigurations in Active Directory Certificate Services (AD CS), enabling certificate template abuse,…

Tool for Active Directory Certificate Services enumeration and abuse

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths

Redirects EDR working folders using a Bind Filter (bindflt.sys) to bypass endpoint detection, corrupt EDR services, or replace with…

Linux persistence toolkit with 11 modules for SSH key backdoors, cronjobs, systemd services, LKM rootkits, and LD_PRELOAD privilege escalation.…

Red-team EDR evasion utility that terminates security services by abusing Process Explorer driver functionality to bypass PPL and ObRegisterCallbacks.

The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment with the…

Windows Remote Desktop Services Vulnerability Allows Remote Code Execution

Walkthrough on the exploitation of CVE-2022-26923, a vulnerability in AD Certificate Services

Proof-of-concept exploit for CVE-2021-44595 and CVE-2021-44596 in Wondershare Dr.Fone, enabling remote code execution as SYSTEM via vulnerable…

CVE-2025-21293 is an elevation of privilege vulnerability in Active Directory Domain Services. It allows "Network Configuration Operators" to execute…

Full-cycle Pentest on Metasploitable (VMware/Kali). Scanned services (Apache Tomcat/8180), researched CVE-2002-0936 via Exploit-DB, and gained access…

PowerShell script that audits Windows service binaries for writable permissions, identifying privilege escalation vectors by checking ACLs on…