CVE-2025-49144 PoC for security researchers to test and try.
☆89Jun 30, 2025Updated last year
Alternatives and similar repositories for CVE-2025-49144_PoC
Users that are interested in CVE-2025-49144_PoC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Zero Setup is a Bash script that automates the installation process of all the personal tools and software you need on your system. It s…☆13Nov 19, 2023Updated 2 years ago
- PoC Exploit for the NTLM reflection SMB flaw.☆713Feb 18, 2026Updated 6 months ago
- CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File☆404Mar 20, 2025Updated last year
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#…☆378Updated this week
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆66Jan 21, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆100Jul 10, 2025Updated last year
- CVE-2025-5777 (CitrixBleed 2) - Critical memory leak vulnerability affecting Citrix NetScaler ADC and Gateway devices☆48Jul 8, 2025Updated last year
- ☆19Aug 15, 2025Updated last year
- Offensive Security & Red Teaming Labs and Projects☆28Aug 26, 2025Updated 11 months ago
- Wing FTP Server Remote Code Execution (RCE) Exploit (CVE-2025-47812)☆54Jul 14, 2025Updated last year
- ☆267Jul 8, 2025Updated last year
- ☆202Mar 28, 2025Updated last year
- Remote Code Execution via Use-After-Free in JScript.dll (CVE-2025-30397)☆67May 31, 2025Updated last year
- This tool exploits Golden DMSA attack against delegated Managed Service Accounts.☆100Jul 15, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- POC for CVE-2024-31982: XWiki Platform Remote Code Execution > 14.10.20☆10Jun 22, 2024Updated 2 years ago
- Proof-of-Concept of the CVE-2025-9491 using invisible characters in the arguments of a Windows shortcut file (.lnk)☆18Nov 7, 2025Updated 9 months ago
- Small Script that permits to enumerate folders in Windows Defender Exclusion List with no Administrative privileges☆27Nov 20, 2024Updated last year
- A portfolio demonstrating advanced blue and red team skills, including: SSH MFA implementation, Volatility-based memory forensics to dete…☆22Oct 19, 2025Updated 10 months ago
- ☆122May 29, 2025Updated last year
- Hides in your attic... I mean process☆24Apr 29, 2026Updated 3 months ago
- Windows Error Reporting ALPC Elevation of Privilege (CVE-2026-20817) - Proof-of-Concept exploit demonstrating local privilege escalation …☆127Feb 19, 2026Updated 5 months ago
- Proof of Concept Exploit for CVE-2024-9464☆45Oct 9, 2024Updated last year
- AppLocker-Based EDR Neutralization☆341Dec 19, 2025Updated 7 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A cross-platform tool to find and decrypt Group Policy Preferences passwords from the SYSVOL share using low-privileged domain accounts☆175Jun 18, 2026Updated 2 months ago
- Combining KslDump and GhostKatz to dump LSASS using no-fix KslD.sys memory read to bypass PPL. Extracts MSV1_0 NT hashes and WDigest clea…☆76Mar 25, 2026Updated 4 months ago
- Universal exploitation tool for CVE-2025-33073 targeting Windows Domain Controllers with DNSAdmins privileges and WinRM enabled.☆67Nov 14, 2025Updated 9 months ago
- CVE-2025-3248 Langflow RCE Exploit☆17Jun 17, 2025Updated last year
- Cobalt Strike Aggressor Script for identifying security products on Windows hosts — six enumeration methods rated by noise level, from si…☆93Feb 6, 2026Updated 6 months ago
- Morpheus is an lsass stealer that extracts lsass.exe in RAM and exfiltrates it via forged and crypted NTP packets. For authorized testin…☆167Jun 19, 2025Updated last year
- Automatically deploying Mythic C2 in Azure using Terraform☆25Jul 3, 2026Updated last month
- CVE-2025-62518: TARmageddon☆19Oct 21, 2025Updated 9 months ago
- Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advance…☆590May 22, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- MSDELTA / PA30 patch file format☆15Jun 22, 2024Updated 2 years ago
- The DCERPC only printerbug.py version☆233Oct 30, 2025Updated 9 months ago
- BYOVD tool for manipulating Windows Protected Process Light (PPL) protection at the kernel level.☆92May 25, 2026Updated 2 months ago
- Advanced Active Directory network topology analyzer with SMB validation, multiple authentication methods (password/NTLM/Kerberos), and co…☆825May 16, 2026Updated 3 months ago
- Automating the MITM attack on WSUS☆402Updated this week
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆209Nov 18, 2025Updated 9 months ago
- PDF dropper Red Team Scenairos☆232Jul 31, 2024Updated 2 years ago