
CVE-2026-6875-PoC-Exploit
CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell,…

CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell,…

Vulnerable Samba 3.0.24 environment for reproducing CVE-2007-2447 command execution, intended for exploit testing and security research.

A Tool to use PowerShell Remoting / WinRM to execute PowerShell commands on remote hosts through WinRM double hop technique.

Modified version of the passing-the-hash tool collection made to work straight out of the box

Firecat is a penetration testing tool that allows you to punch reverse TCP tunnels out of a compromised network.

Python script that patches the termsrv.dll file on Windows to enable multiple concurrent RDP sessions, supporting Windows 10 versions 1703 through…

Fileless lateral movement tool that relies on ChangeServiceConfigA to run command

A SOCKS proxy for Citrix.

A Windows Remote Administration Tool in Visual Basic with UNC paths

Remote Desktop Protocol .NET Console Application for Authenticated Command Execution

The Shadow Attack Framework

.NET Project for performing Authenticated Remote Execution

Exploit for CVE-2025-50505 in Clash Verge Rev, demonstrating local privilege escalation and remote code execution via unauthenticated API, including…

Impacket-based exploit for PrintNightmare (CVE-2021-1675/CVE-2021-34527) enabling remote DLL execution via SMB, with scanning and mitigation guidance.

Cross-platform interactive shell for Microsoft Defender for Endpoint Live Response

Hijack Putty sessions in order to sniff conversation and inject Linux commands.

Lightweight Go binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy for ephemeral red team access. Supports…

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar