0x4xel / Bat-PotatoView external linksLinks
Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.
☆48Dec 13, 2022Updated 3 years ago
Alternatives and similar repositories for Bat-Potato
Users that are interested in Bat-Potato are comparing it to the libraries listed below
Sorting:
- TheSprayer is a cross-platform tool designed to help penetration testers spray passwords against an Active Directory domain without locki…☆37Nov 24, 2025Updated 2 months ago
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆24Apr 4, 2023Updated 2 years ago
- Unauthenticated Remote Code Execution via Angular-Base64-Upload Library☆26Jul 12, 2025Updated 7 months ago
- فایل ها و فیلم های ورکشاپ ردتیم 2024 با هانت لرن☆32Sep 15, 2024Updated last year
- ☆24Oct 18, 2022Updated 3 years ago
- Modular C# framework to exfiltrate loot over secure and trusted channels.☆131Sep 12, 2021Updated 4 years ago
- Top 400 passwords as per HaveIBeenPwned☆22Oct 14, 2024Updated last year
- Beacon Object File PoC implementation of KillDefender☆235Apr 12, 2022Updated 3 years ago
- .NET implementation of Get-GPPPassword. Retrieves the plaintext password and other information for accounts pushed through Group Policy P…☆177Dec 18, 2019Updated 6 years ago
- Enable RDP and set firewall by Windows API.☆21Mar 3, 2022Updated 3 years ago
- ☆25Jun 2, 2023Updated 2 years ago
- POC for CVE-2024-31982: XWiki Platform Remote Code Execution > 14.10.20☆10Jun 22, 2024Updated last year
- A Stealthy Lsass Dumper - can abuse ProcExp152.sys driver to dump PPL Lsass, no dbghelp.lib calls.☆326Jan 31, 2023Updated 3 years ago
- Unauthenticated RCE on CraftCMS when PHP `register_argc_argv` config setting is enabled☆49Dec 23, 2024Updated last year
- Exploit for CVE-2024-3273, supports single and multiple hosts☆13Apr 7, 2024Updated last year
- P2P Communications of Named Pipes☆12Dec 11, 2025Updated 2 months ago
- Application Security Mind Maps☆10Apr 10, 2021Updated 4 years ago
- Automatic tool to find arbitrary Intent that gets reflected back vulnerabilities on Android apps.☆12Nov 15, 2022Updated 3 years ago
- Automate Cobalt Strike keystore file for Teamserver SSL.☆11Feb 1, 2022Updated 4 years ago
- Companion Worm research☆16Nov 8, 2021Updated 4 years ago
- Cobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks b…☆469Mar 8, 2023Updated 2 years ago
- A RunAs clone with the ability to specify the password as an argument.☆112Jul 2, 2023Updated 2 years ago
- Retrieve LAPS password from LDAP☆433Feb 17, 2021Updated 4 years ago
- ☆539Nov 20, 2021Updated 4 years ago
- CVE-2024-41570: Havoc C2 0.7 Teamserver SSRF exploit☆74Sep 11, 2024Updated last year
- This script was developped to assist in SpearPhishing campaign during Red Team operations. It can be used to generate random name based o…☆13Feb 6, 2023Updated 3 years ago
- Released presentations of my talks + code that used during these talks☆15Sep 5, 2024Updated last year
- Advanced test for proxy & waf☆13Sep 13, 2025Updated 5 months ago
- 🔎 Most Advanced Open Source Intelligence (OSINT) Framework for scanning IP Address, Emails, Websites, Organizations.☆10Dec 2, 2021Updated 4 years ago
- Widget Options – The #1 WordPress Widget & Block Control Plugin <= 4.0.7 - Authenticated (Contributor+) Remote Code Execution☆13Dec 2, 2024Updated last year
- ☆11Nov 12, 2023Updated 2 years ago
- ☆15May 3, 2024Updated last year
- Loads any C# binary in mem, patching AMSI + ETW.☆839Oct 3, 2021Updated 4 years ago
- 各端、平台快速消息通知程序,支持配置文件形式或API调用☆32Oct 22, 2024Updated last year
- Obfuscated, FUD Simple PowerShell Reverse Shell One-Liner☆80Nov 2, 2023Updated 2 years ago
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techni…☆1,364Oct 27, 2023Updated 2 years ago
- Simple website to automatically generate string encryption/decryption routines for C#☆10Feb 12, 2022Updated 4 years ago
- Looney Tunables Local privilege escalation (CVE-2023-4911) workshop☆15Oct 1, 2024Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33May 30, 2024Updated last year