
CVE-2025-26264
CVE-2025-26264 - GeoVision GV-ASWeb with the version 6.1.2.0 or less, contains a Remote Code Execution (RCE) vulnerability within its Notification…

CVE-2025-26264 - GeoVision GV-ASWeb with the version 6.1.2.0 or less, contains a Remote Code Execution (RCE) vulnerability within its Notification…

Exploit toolkit for AD CS CVE-2026-54121: low-privileged domain users impersonate a Domain Controller, forge certificates, and compromise the domain…

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

Manipulating and Abusing Windows Access Tokens.

Relays NegoEx/PKU2U Kerberos authentication to arbitrary targets, enabling credentialless authentication, command execution, SMB hash dumping, and…

A basic emulation of an "RPC Backdoor"

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

RunasCs - Csharp and open version of windows builtin runas.exe

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

Stop Windows Defender programmatically

Infect Shared Files In Memory for Lateral Movement

A windows token impersonation tool

Cross-platform network & port scanner with a desktop GUI.

Programmatically start WebClient from an unprivileged session to enable that juicy privesc.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

Rusty Impersonate