Noxtal / follina
All about CVE-2022-30190, aka follina, that is a RCE vulnerability that affects Microsoft Support Diagnostic Tools (MSDT) on Office apps such as Word. This is a very simple POC, feel free to check the sources below for more threat intelligence.
☆24Updated 2 years ago
Alternatives and similar repositories for follina:
Users that are interested in follina are comparing it to the libraries listed below
- A malicious .cab creation tool for CVE-2021-40444☆12Updated 3 years ago
- A little implant which SSH's back with a shell☆36Updated 3 years ago
- Windows File Enumeration Intel Gathering Tool.☆17Updated last year
- Tomcat backdoor based on CS blog☆27Updated last year
- Python script to exploit CVE-2022-22954 and then exploit CVE-2022-22960☆2Updated 2 years ago
- C# .Net 5.0 project to build BOF (Beacon Object Files) in mass☆28Updated last year
- Coyote is a standalone C# post-exploitation implant for maintaining access to compromised Windows infrastructure during red team engageme…☆19Updated 2 years ago
- ☆17Updated 3 months ago
- Execute embedded Mimikatz☆13Updated 3 years ago
- Check for NotProxyShell CVE-2022-40140 & CVE-2022-41082☆25Updated 2 years ago
- Beacon Object Files used for Cobalt Strike☆17Updated last year
- Port forwarding via MSRPC (445/tcp) [WIP]☆32Updated 3 years ago
- Beacon payload using AV bypass method from https://github.com/fullmetalcache/CsharpMMNiceness and shellcode generated from https://github…☆20Updated 4 years ago
- ShootCutMe an .LNK file creator tool for redteamer☆13Updated 5 months ago
- Cisco CallManager User Enumeration☆15Updated 2 years ago
- Tool to start processes as SYSTEM using token duplication☆38Updated 4 years ago
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆33Updated last year
- Proof of concept about a path traversal vulnerability in Microsoft's Diagcab technology that could lead to remote code execution☆23Updated 2 years ago
- Cobalt Strike (CS) Beacon Object File (BOF) foundation for kernel exploitation using CVE-2021-21551.☆29Updated last year
- Remote Code Execution on Microsoft Exchange Server through fixed cryptographic keys☆20Updated 3 years ago
- A Python script to find tenant id an region from a list of domain names.☆14Updated last month
- A straightforward tool for exploiting SMTP Smuggling vulnerabilities.☆14Updated 8 months ago
- Quickly generate every payload type for each listener and optionally host via HTTP.☆21Updated 3 years ago
- Right-To-Left Override POC☆34Updated 3 years ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- Multi-threaded C2 framework built in Flask with keylogger - from the Offensive C# Course by Naga Sai Nikhil☆21Updated 2 years ago
- Yet, Another Packer/Loader☆25Updated 2 years ago
- Cobalt Strike profile generator using Jenkins to automate the heavy lifting☆34Updated 2 years ago
- CVE-2021-34527 AddPrinterDriverEx() Privilege Escalation☆21Updated 2 years ago