CVE-2026-41089 PoC — Netlogon CLDAP stack buffer overflow (CVSS 9.8 CRITICAL)
☆210Jun 2, 2026Updated 2 months ago
Alternatives and similar repositories for CVE-2026-41089
Users that are interested in CVE-2026-41089 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Full exploit code for CVE-2026-40369 - A Windows kernel arbitrary write vulnerability that allows browser sandbox escape from all browser…☆262May 18, 2026Updated 3 months ago
- PoC Exploit for the NTLM reflection SMB flaw.☆714Feb 18, 2026Updated 6 months ago
- Code and data for our paper "Onelogon: Taking over Active Directory Accounts via Netlogon" (WOOT’26).☆120Jun 22, 2026Updated 2 months ago
- Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. Implemented in C#, C++, Crystal, P…☆155Aug 17, 2026Updated last week
- CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer☆75May 6, 2026Updated 3 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Dump TGTs remotely and convert Windows' klist binary output to ccache.☆96Aug 6, 2026Updated 2 weeks ago
- A stealthier approach to WMI-based command execution using Impacket without touching the disk.☆88Mar 15, 2026Updated 5 months ago
- ☆249Mar 13, 2026Updated 5 months ago
- Multi-architecture Linux privilege escalation toolkit with 24 pre-built and runtime-compilable exploits. Auto-detects kernel version, fil…☆344Jul 7, 2026Updated last month
- ☆64Jul 12, 2026Updated last month
- NTLM HTTP relay tool with SOCKS proxy for browser session hijacking☆186Apr 6, 2026Updated 4 months ago
- Extract Windows credentials directly from VM memory snapshots and virtual disks☆1,503Jun 7, 2026Updated 2 months ago
- A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique☆183Apr 14, 2026Updated 4 months ago
- PoC for exploiting CVE-2026-26128.☆63May 6, 2026Updated 3 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Python tool to automatically perform SPN-less RBCD attacks.☆132Jan 7, 2026Updated 7 months ago
- PoC: fully unprivileged container escape to node-level code execution on Kubernetes via CVE-2026-31431 page-cache corruption + shared ima…☆187May 7, 2026Updated 3 months ago
- Windows named pipe hooking toolkit☆45Mar 20, 2026Updated 5 months ago
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 4 months ago
- Async BOF to automatically extract or renew Kerberos TGTs on a target system.☆134Jul 23, 2026Updated last month
- Another new coercion primitive with LPE - machine-account NTLM coercion from a non-admin user via Windows Store InstallService plugin res…☆88Jun 20, 2026Updated 2 months ago
- DCOM in memory and fileless lateral movement techniques through .Net deserilization☆288Jun 22, 2026Updated 2 months ago
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#…☆383Aug 17, 2026Updated last week
- ADAttributeHound is an OpenGraph extension for BloodHound that exports Active Directory custom attributes as node properties.☆21Jun 18, 2026Updated 2 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- test☆108Apr 25, 2026Updated 3 months ago
- A Native Bash Framework for Kerberos Ticket Extraction on Linux 🔐☆48Feb 23, 2026Updated 6 months ago
- A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.☆167Apr 15, 2026Updated 4 months ago
- Another BYOVD process killer. works on all EDR's. fully signed.☆290May 19, 2026Updated 3 months ago
- Havoc BOF implementation of BYOVD attack to terminate PPL-protected EDR processes using a signed Microsoft kernel driver.☆40Apr 6, 2026Updated 4 months ago
- COM Windows Persistence Technique