CVE-2026-41089 PoC — Netlogon CLDAP stack buffer overflow (CVSS 9.8 CRITICAL)
☆209Jun 2, 2026Updated 2 months ago
Alternatives and similar repositories for CVE-2026-41089
Users that are interested in CVE-2026-41089 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Full exploit code for CVE-2026-40369 - A Windows kernel arbitrary write vulnerability that allows browser sandbox escape from all browser…☆257May 18, 2026Updated 2 months ago
- PoC Exploit for the NTLM reflection SMB flaw.☆714Feb 18, 2026Updated 5 months ago
- Code and data for our paper "Onelogon: Taking over Active Directory Accounts via Netlogon" (WOOT’26).☆117Jun 22, 2026Updated last month
- Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. Implemented in C#, C++, Crystal, P…☆154Feb 17, 2026Updated 5 months ago
- CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer☆74May 6, 2026Updated 2 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Dump TGTs remotely and convert Windows' klist binary output to ccache.☆92Jun 30, 2026Updated last month
- A stealthier approach to WMI-based command execution using Impacket without touching the disk.☆86Mar 15, 2026Updated 4 months ago
- ☆247Mar 13, 2026Updated 4 months ago
- Multi-architecture Linux privilege escalation toolkit with 24 pre-built and runtime-compilable exploits. Auto-detects kernel version, fil…☆328Jul 7, 2026Updated 3 weeks ago
- ☆58Jul 12, 2026Updated 3 weeks ago
- NTLM HTTP relay tool with SOCKS proxy for browser session hijacking☆183Apr 6, 2026Updated 3 months ago
- Extract Windows credentials directly from VM memory snapshots and virtual disks☆1,482Jun 7, 2026Updated last month
- PoC for exploiting CVE-2026-26128.☆62May 6, 2026Updated 2 months ago
- A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique☆183Apr 14, 2026Updated 3 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Python tool to automatically perform SPN-less RBCD attacks.☆132Jan 7, 2026Updated 6 months ago
- PoC: fully unprivileged container escape to node-level code execution on Kubernetes via CVE-2026-31431 page-cache corruption + shared ima…☆183May 7, 2026Updated 2 months ago
- Windows named pipe hooking toolkit☆45Mar 20, 2026Updated 4 months ago
- Async BOF to automatically extract or renew Kerberos TGTs on a target system.☆134Jul 23, 2026Updated last week
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 3 months ago
- Another new coercion primitive with LPE - machine-account NTLM coercion from a non-admin user via Windows Store InstallService plugin res…☆87Jun 20, 2026Updated last month
- DCOM in memory and fileless lateral movement techniques through .Net deserilization☆280Jun 22, 2026Updated last month
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#…☆372Feb 2, 2026Updated 6 months ago
- ADAttributeHound is an OpenGraph extension for BloodHound that exports Active Directory custom attributes as node properties.☆21Jun 18, 2026Updated last month
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- test☆108Apr 25, 2026Updated 3 months ago
- A Native Bash Framework for Kerberos Ticket Extraction on Linux 🔐☆47Feb 23, 2026Updated 5 months ago
- Another BYOVD process killer. works on all EDR's. fully signed.☆288May 19, 2026Updated 2 months ago
- A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.☆167Apr 15, 2026Updated 3 months ago
- COM Windows Persistence Technique☆90Apr 27, 2026Updated 3 months ago
- Havoc BOF implementation of BYOVD attack to terminate PPL-protected EDR processes using a signed Microsoft kernel driver.☆40Apr 6, 2026Updated 3 months ago
- KslDump — Why bring your own knife when Defender already left one in the kitchen?☆398Apr 13, 2026Updated 3 months ago
- RoguePlanet Windows Defender Vulnerability☆1,565Jun 9, 2026Updated last month
- This is the tool to dump the LSASS process on modern Windows 11☆593May 23, 2026Updated 2 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆110Apr 23, 2026Updated 3 months ago
- CVE-2026-42980 PUBLIC EXPLOIT + RESEARCH☆55Jul 7, 2026Updated 3 weeks ago
- poc it like it's hot☆848Jun 30, 2026Updated last month
- A tool for coercing and relaying Kerberos authentication over DCOM and RPC.☆151Jul 17, 2025Updated last year
- Dump LSASS via physical memory read primitives in vulnerable kernel drivers☆338Feb 2, 2026Updated 6 months ago
- abusing windows toast notifications for fun and user manipulation☆106Jul 11, 2026Updated 3 weeks ago
- Cobalt Strike BOF used to perform privilege escalation by exploiting the SeImpersonate privilege. Based on the original GodPotato PoC by …☆277Apr 16, 2026Updated 3 months ago