Nicolas-Arsenault / Havoc-C2-RCE-2024
Abusing SSRF to deliver an authenticated command injection payload
☆28Updated last month
Alternatives and similar repositories for Havoc-C2-RCE-2024:
Users that are interested in Havoc-C2-RCE-2024 are comparing it to the libraries listed below
- Cleo Unrestricted file upload and download PoC (CVE-2024-50623)☆22Updated 4 months ago
- ☆55Updated 5 months ago
- Proof of Concept Exploit for CVE-2024-9465☆29Updated 6 months ago
- A remote unauthenticated DOS POC exploit that targets the authentication implementation of Havoc.☆35Updated last year
- Tool to aid in dumping LSASS process remotely☆38Updated 8 months ago
- Winsocket for Cobalt Strike.☆98Updated last year
- ☆54Updated 6 months ago
- Tool to bypass LSA Protection (aka Protected Process Light)☆49Updated 3 months ago
- CVE-2025-24016: Wazuh Unsafe Deserialization Remote Code Execution (RCE)☆36Updated 2 months ago
- Tool to start processes as SYSTEM using token duplication☆38Updated 4 years ago
- POC of GITHUB simple C2 in rust☆53Updated 3 months ago
- Small toolkit for extracting information and dumping sensitive strings from Windows processes☆110Updated 9 months ago
- Duplicate not owned Token from Running Process☆72Updated last year
- Docker container for running CobaltStrike 4.10☆37Updated 7 months ago
- Exploit for the CVE-2024-5806☆45Updated 10 months ago
- RCE through a race condition in Apache Tomcat☆55Updated 4 months ago
- ownCloud exploits for CVE-2023-49105☆36Updated last year
- Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆95Updated last year
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆41Updated 8 months ago
- SAM Dumping in C#☆48Updated 3 months ago
- Proof of Concept Exploit for CVE-2024-9464☆45Updated 6 months ago
- ☆52Updated 4 months ago
- Create Anti-Copy DRM Malware☆55Updated 8 months ago
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆31Updated last year
- CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection☆32Updated 11 months ago
- Creation and removal of Defender path exclusions and exceptions in C#.☆31Updated last year
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆56Updated 4 months ago
- Ivanti EPM AgentPortal RCE Vulnerability☆21Updated 7 months ago
- DFSCoerce exe revisited version with custom authentication☆39Updated last year
- Exploit for CVE-2024-5009☆13Updated 9 months ago