LudovicPatho / CVE-2022-26923_AD-Certificate-Services
The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment with the Active Directory Certificate Services (AD CS) server role installed.
☆42Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for CVE-2022-26923_AD-Certificate-Services
- Impacket is a collection of Python classes for working with network protocols.☆39Updated 3 years ago
- Exploit for CVE-2023-27532 against Veeam Backup & Replication☆102Updated last year
- CVE-2023-20198 Exploit PoC☆39Updated 11 months ago
- CVE-2021-40444☆64Updated 2 years ago
- DCSync Attack from Outside using Impacket☆111Updated 2 years ago
- Convert Cobalt Strike profiles to IIS web.config files☆110Updated 3 years ago
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆77Updated 2 years ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆173Updated 2 years ago
- ☆77Updated last year
- Extendable payload obfuscation and delivery framework☆141Updated 2 years ago
- Active Directory password spraying tool. Auto fetches user list and avoids potential lockouts.☆126Updated 2 years ago
- Windows Privilege Escalation☆43Updated 2 years ago
- A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.☆79Updated 11 months ago
- cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text ver…☆37Updated 2 years ago
- ☆89Updated 2 years ago
- ☆53Updated 7 months ago
- Repository contains psexec, which will help to exploit the forgotten pipe☆162Updated 2 weeks ago
- PoC for CVE-2022-26809, analisys and considerations are shown in the github.io.☆108Updated 2 years ago
- Pass the Hash to a named pipe for token Impersonation☆140Updated 3 years ago
- Bypass Detection By Randomising ROR13 API Hashes☆133Updated 2 years ago
- AV/EDR evasion via direct system calls.☆106Updated 11 months ago
- POC tools for exploring SMB over QUIC protocol☆121Updated 2 years ago
- A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.☆124Updated last year
- Microsoft Exchange password spray tool with proxy support.☆40Updated 3 years ago
- Checks for signature requirements over LDAP☆92Updated 2 years ago
- Secretsdump C# version only supporting local (live) operation☆47Updated last year
- ☆51Updated 2 years ago