
CVE-2026-75898
Proof-of-concept for CVE-2026-75898, an SSRF in RAGFlow's Invoke component. Demonstrates the vulnerability with unmodified source, includes E2E…

Proof-of-concept for CVE-2026-75898, an SSRF in RAGFlow's Invoke component. Demonstrates the vulnerability with unmodified source, includes E2E…

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

Dynamically invoke arbitrary unmanaged code

This repository contains a proof-of-concept exploit for CVE-2025-48827, a critical authentication bypass vulnerability affecting vBulletin…

PowerShell Script to automatically abuse the BadSuccessor vulnerability (CVE-2025-53779)

Automated Active Directory auditing and enumeration tool that generates detailed HTML audit reports with CSV/XLSX export, designed for security…

This cheatsheet maps common impacket workflows to their modern alternatives

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

PowerShell enumeration script for discovering service-backed COM objects via CLSID/AppID correlation and activation testing.

Arbitrary Function Call Exploit using the ThrottleStop driver

C# tool that enumerates running processes, loaded DLLs, installed services, and drivers to detect the presence of AV, EDR, and logging products,…

Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-native…

CVE-2025-54100(PowerShell 远程代码执行漏洞)

PowerShell tool for transferring files in restricted environments (Citrix, RDP, VNC, Guacamole) via clipboard, Base64 chunks, keystrokes, or OCR…

Remote code execution (RCE) through insecure deserialization

Proof-of-concept exploit for CVE-2024-4577, a PHP CGI argument injection vulnerability enabling remote code execution via crafted HTTP requests.

Proof of concept for CVE-2020-36708

Simple & Powerful PowerShell Script Obfuscator