
CVE-2026-76578
Proof-of-concept exploit for CVE-2026-76578 and CVE-2026-76560, chaining anonymous LDAP ADD with a 389-ds SELFDN bypass to gain FreeIPA domain admin…

Proof-of-concept exploit for CVE-2026-76578 and CVE-2026-76560, chaining anonymous LDAP ADD with a 389-ds SELFDN bypass to gain FreeIPA domain admin…

Shadow Vault – Add shadow users with SHA-512 hash, auto aging match, multiple write fallbacks.

PowerShell MachineAccountQuota and DNS exploit tools

Proof-of-concept exploit for authentication bypass in ConnectWise ScreenConnect, enabling addition of administrative user as first step to Remote…

CVE-2026-0073 — Android ADB daemon (adbd) TLS authentication bypass via EVP_PKEY_cmp type confusion. Gain unauthorized shell access over WiFi using…

PowerShell script for local privilege escalation via PrintNightmare (CVE-2021-34527). Injects a custom DLL payload to add a local admin user,…

Crystal port of GodPotato to abuse SeImpersonatePrivilege with indirect syscalls, dynamic API resolution and compile-time string obfuscation. Run…

Source generator to add D/Invoke and indirect syscall methods to a C# project.

Exploiting a Cross-site request forgery (CSRF) attack to creat a new privileged user through the Webmin's add users feature

Weaponized proof-of-concept for CVE-2026-0073, an Android adbd authentication bypass enabling zero-click remote root access via Wireless ADB, with…

PowerShell local privilege escalation exploit for PrintNightmare (CVE-2021-34527) targeting Windows Print Spooler. Embeds custom DLL payload to add…

💣 Impulse Denial-of-service ToolKit

An in-depth approach to obfuscating the individual components of a PowerShell payload whether you're on Windows or Kali Linux.

PowerSploit - A PowerShell Post-Exploitation Framework

Transparent proxy that decrypts SSL traffic and prints out IRC messages.

BYOVD hunter to help prioritize windows drivers worth manual analysis


LSTAR - CobaltStrike Translated to EN