Proof of concept for abusing SeLoadDriverPrivilege (Privilege Escalation in Windows)
☆162Jun 14, 2018Updated 7 years ago
Alternatives and similar repositories for EoPLoadDriver
Users that are interested in EoPLoadDriver are comparing it to the libraries listed below
Sorting:
- This is a standalone exploit for a vulnerable feature in Capcom.sys☆330Sep 18, 2022Updated 3 years ago
- Capcom Rootkit POC☆210Mar 5, 2017Updated 9 years ago
- Use SE_BACKUP_NAME/SeBackupPrivilege to access objects you shouldn't have access to☆437Jul 29, 2013Updated 12 years ago
- Loads a custom dll in system32 via diaghub.☆84Mar 16, 2020Updated 6 years ago
- GitLab User Enumeration☆55Jan 3, 2025Updated last year
- A simple splunk package for obtaining reverse shells on both Windows and most *nix systems.☆131Aug 20, 2018Updated 7 years ago
- All of Your Copy/Paste Belong to Us: Stealing the clipboard and using it for C2 communications☆82Feb 21, 2019Updated 7 years ago
- This script will bruteforce the credential of tomcat manager or host-manager☆32Jun 24, 2020Updated 5 years ago
- ☆112Dec 13, 2019Updated 6 years ago
- C# implementation of harmj0y's PowerView☆47Mar 22, 2020Updated 5 years ago
- Use CVE-2020-0668 to perform an arbitrary privileged file move operation.☆231Feb 20, 2020Updated 6 years ago
- Python script to decrypt passwords stored by mRemoteNG☆176Jul 6, 2023Updated 2 years ago
- Joomla login bruteforce☆107Jul 18, 2024Updated last year
- ☆190Jan 12, 2026Updated 2 months ago
- Another Windows Local Privilege Escalation from Service Account to System☆1,161Jan 9, 2021Updated 5 years ago
- getsystem via parent process using ps1 & embeded c#☆473Oct 26, 2023Updated 2 years ago
- Extracts Key Values from .keytab files☆351Aug 26, 2020Updated 5 years ago
- Exchange privilege escalations to Active Directory☆810Apr 23, 2023Updated 2 years ago
- Windows - Weaponizing privileged file writes with the Update Session Orchestrator service☆404Jun 6, 2020Updated 5 years ago
- SharpUp is a C# port of various PowerUp functionality.☆1,466Feb 14, 2024Updated 2 years ago
- SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GP…☆1,313Dec 15, 2020Updated 5 years ago
- Joomla! Core 1.5.0 - 3.9.4 - Directory Traversal / Authenticated Arbitrary File Deletion in Python3☆24Feb 27, 2023Updated 3 years ago
- SharpDPAPI is a C# port of some Mimikatz DPAPI functionality.☆1,397Jun 27, 2024Updated last year
- Drupal < 7.58 - Drupalgeddon 3 Authenticated Remote Code Execution (Metasploit)☆35May 1, 2018Updated 7 years ago
- Abusing impersonation privileges through the "Printer Bug"☆2,204Sep 10, 2020Updated 5 years ago
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆931Jul 26, 2021Updated 4 years ago
- ADCS abuser☆317Feb 6, 2023Updated 3 years ago
- A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts t…☆2,744Dec 18, 2021Updated 4 years ago
- Python script to enumerate users, groups and computers from a Windows domain through LDAP queries☆953Apr 20, 2022Updated 3 years ago
- Username guessing tool primarily for use against the default Solaris SMTP service. Can use either EXPN, VRFY or RCPT TO.☆153Apr 20, 2022Updated 3 years ago
- Active Directory Integrated DNS dumping by any authenticated user☆1,146Apr 4, 2025Updated 11 months ago
- Lists who can read any gMSA password blobs and parses them if the current user has access.☆364Feb 12, 2024Updated 2 years ago
- SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, Supe…☆1,314Nov 22, 2022Updated 3 years ago
- A PowerShell script to download all files, messages and user profiles that a user has access to in slack.☆156Oct 30, 2020Updated 5 years ago
- PowerShell interpreter for unmanaged (non CLI) C++ projects☆16Jul 19, 2017Updated 8 years ago
- Tools for Kerberos PKINIT and relaying to AD CS☆887Jan 3, 2025Updated last year
- Malicious shortcut generator for collecting NTLM hashes from insecure file shares.☆350Oct 22, 2024Updated last year
- A Powershell client for dnscat2, an encrypted DNS command and control tool.☆430Aug 22, 2023Updated 2 years ago
- ☆12Feb 19, 2017Updated 9 years ago