AlmondOffSec / PoCs
Proof-of-concept code for various bugs
☆110Updated 6 months ago
Alternatives and similar repositories for PoCs:
Users that are interested in PoCs are comparing it to the libraries listed below
- POC for NetworkService PrivEsc☆126Updated 5 years ago
- Use CVE-2020-0668 to perform an arbitrary privileged file move operation.☆220Updated 5 years ago
- Weaponizing for Arbitrary Files/Directories Delete bugs to Get NT AUTHORITY\SYSTEM☆123Updated 4 years ago
- Proof of concept exploit of Windows Update Orchestrator Service Elevation of Privilege Vulnerability☆121Updated 4 years ago
- Loads a custom dll in system32 via diaghub.☆74Updated 5 years ago
- A sort of simple shell which support multiple protocols.☆99Updated 5 years ago
- Print Spooler Named Pipe Impersonation for Cobalt Strike☆264Updated 4 years ago
- Collection of tested Cobaltstrike aggressor scripts.☆116Updated 5 years ago
- Cisco AnyConnect < 4.8.02042 privilege escalation through path traversal☆106Updated 4 years ago
- ☆52Updated 3 years ago
- A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts t…☆63Updated 6 years ago
- Yet another LSASS dumper☆76Updated 4 years ago
- One Token To Rule Them All https://labs.mwrinfosecurity.com/blog/incognito-v2-0-released/☆149Updated 4 years ago
- ☆191Updated 5 years ago
- ☆151Updated 4 years ago
- Programmatically create an administrative user under Windows☆180Updated 8 years ago
- Collection of scripts, binaries and the like to aid in WhiteList Evasion on a Microsoft Windows Network.☆129Updated 9 years ago
- ☆112Updated 4 years ago
- Various Aggressor Scripts I've Created.☆149Updated 3 years ago
- My CobaltStrike BOFS☆164Updated 2 years ago
- PoC exploits for CVE-2020-17382☆114Updated 4 years ago
- ☆158Updated 3 years ago
- (kinda) Malicious Outlook Reader☆135Updated 4 years ago
- 64bit Windows 10 shellcode that injects all processes with Meterpreter reverse shells.☆129Updated 2 years ago
- Evading WinDefender ATP credential-theft☆255Updated 5 years ago
- Exploit to SYSTEM for CVE-2021-21551☆237Updated 3 years ago
- named pipe server with impersonation☆59Updated 5 years ago
- Constrained Language Mode + AMSI bypass all in one☆157Updated 5 years ago
- Shellcode injector using direct syscalls☆119Updated 4 years ago
- Pass the Hash to a named pipe for token Impersonation☆143Updated 4 years ago