
PXEThief
PXEThief is a set of tooling that can extract passwords from the Operating System Deployment functionality in Microsoft Endpoint Configuration Manager

PXEThief is a set of tooling that can extract passwords from the Operating System Deployment functionality in Microsoft Endpoint Configuration Manager

Set of tools to analyze Windows sandboxes for exposed attack surface.

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

Recover the default privilege set of a LOCAL/NETWORK SERVICE account

Determine privileges from cloud credentials via brute-force testing.

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

From UART to Root: Breaking Into the Xiaomi C200 via U-Boot

OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

Bash script for Privilege Escalation via "ndsudo" (Netdata Local Exploit)

Exploit implementation for Android Stagefright vulnerability CVE-2015-3864, enabling remote code execution and privilege escalation on Android 5.1.1…

A tool uses the QoS Policy (Pacer.sys) to throttle Endpoint Detection and Response (EDR) agents from connecting to the server.

Windows tool to list, get, set, protect, and unprotect process protection levels (PP/L) for debugging, inspection, and privilege escalation.

Tarfile module directory traversal vulnerability ( with overflow crossed Directory ) --> Lead to Privilege escalation

Exploit scripts for CVE-2025-27581

Proof-of-concept exploit for Firefox BrowsingContext authorization bypass (CVE-2026-4692), demonstrating forged IPC messages to set InRDMPane and…

This application gives Mac users in enterprise environments control over the administration of their machines by elevating their access level to…

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

CVE-2017-7308 POC