IncludeSecurity / c2-vulnerabilitiesLinks
PoCs of RCEs against open source C2 servers
☆91Updated last year
Alternatives and similar repositories for c2-vulnerabilities
Users that are interested in c2-vulnerabilities are comparing it to the libraries listed below
Sorting:
- ☆222Updated last year
- CVE-2024-41570: Havoc C2 0.7 Teamserver SSRF exploit☆74Updated last year
- To audit the security of read-only domain controllers☆118Updated 2 years ago
- Citrix Virtual Apps and Desktops (XEN) Unauthenticated RCE☆200Updated last year
- The Official Sliver Armory☆129Updated 9 months ago
- WSUS Unauthenticated RCE☆169Updated 3 months ago
- Github as C2 Demonstration , free API = free C2 Infrastructure☆145Updated 2 years ago
- ☆137Updated 2 years ago
- Leverage WindowsApp createdump tool to obtain an lsass dump☆153Updated last year
- Port of Cobalt Strike's Process Inject Kit☆190Updated last year
- Evasive Golang Loader☆137Updated last year
- CVE-2024-38200 & CVE-2024-43609 - Microsoft Office NTLMv2 Disclosure Vulnerability☆146Updated last year
- SHELLSILO is a cutting-edge tool that translates C syntax into syscall assembly and its corresponding shellcode. It streamlines the proce…☆153Updated 6 months ago
- Chrome browser extension-based Command & Control☆230Updated 7 months ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆149Updated last year
- ☆169Updated last year
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆89Updated 3 years ago
- This repository contains a proof-of-concept exploit written in C++ that demonstrates the exploitation of a vulnerability affecting the Wi…☆77Updated last year
- Repository contains psexec, which will help to exploit the forgotten pipe☆172Updated last year
- Execute shellcode files with rundll32☆214Updated 2 years ago
- Leak of any user's NetNTLM hash. Fixed in KB5040434☆259Updated last year
- Identifies bad bytes from static analysis with any Anti-Virus scanner.☆128Updated last year
- ☆241Updated last year
- ☆247Updated 3 years ago
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆249Updated last year
- ☆158Updated last year
- ☆184Updated 3 years ago
- Useful Cobalt Strike Beacon Object Files (BOFs) used during red teaming and penetration testing engagements.☆138Updated 3 years ago
- Exploit for the CVE-2023-23397☆160Updated 2 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆64Updated last year