This is a PoC code to exploit the IngressNightmare vulnerabilities (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, and CVE-2025-1974).
☆248Mar 26, 2025Updated last year
Alternatives and similar repositories for IngressNightmare-PoC
Users that are interested in IngressNightmare-PoC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- CVE-2025-1974☆90Apr 2, 2025Updated last year
- ☆53Mar 25, 2025Updated last year
- PoC Exploit for the NTLM reflection SMB flaw.☆711Feb 18, 2026Updated 5 months ago
- Apache Tomcat 远程代码执行漏洞批量检测脚本(CVE-2025-24813)☆98Apr 2, 2025Updated last year
- CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File☆405Mar 20, 2025Updated last year
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- IngressNightmare POC. world first non-blind remote execution exploitation with multi-advanced exploitation methods. allow on disk exploit…☆97May 6, 2025Updated last year
- Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409) exploit☆84Oct 7, 2024Updated last year
- PoC☆12Apr 7, 2025Updated last year
- [ALL IN ONE] Everything that I shared to public about Cloud Security is here.☆66Apr 19, 2025Updated last year
- Exploit for the vulnerability CVE-2024-43044 in Jenkins☆188Oct 2, 2024Updated last year
- SharePoint WebPart Injection Exploit Tool☆312Nov 28, 2025Updated 8 months ago
- A critical security vulnerability, identified as CVE-2023-50164 (CVE: 9.8) was found in Apache Struts, allowing attackers to manipulate f…☆86Nov 3, 2025Updated 8 months ago
- Post-exploit a compromised etcd, gain persistence and remote shell to nodes.☆94May 7, 2024Updated 2 years ago
- ☆79Nov 22, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY☆232Apr 12, 2025Updated last year
- A Terraform reproducer for IngressNightmare☆26Mar 26, 2025Updated last year
- ☆161Jul 10, 2024Updated 2 years ago
- CVE-2025-49844 (RediShell)☆343Oct 7, 2025Updated 9 months ago
- The Poc for CVE-2024-20931☆74Feb 2, 2024Updated 2 years ago
- CVE-2025-49844 – Redis Lua Parser Use-After-Free☆65Oct 7, 2025Updated 9 months ago
- LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113☆521Jan 2, 2025Updated last year
- Smart keylogging capability to steal SSH Credentials including password & Private Key☆154Mar 26, 2025Updated last year
- 闭源系统半自动漏洞挖掘工具,针对 jar/war/zip 进行静态代码分析,输出从source到sink的可达路径。LLM将验证路径可达性,并根据上下文给出该路径可信分数☆511Jan 12, 2026Updated 6 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- ☆42Mar 12, 2025Updated last year
- CVE-2024-0012 PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015) RCE POC☆21Nov 19, 2024Updated last year
- A local privilege escalation vulnerability in VMware vCenter Server (and VMware Cloud Foundation) caused by a misconfiguration of sudo, a…☆59Jul 9, 2024Updated 2 years ago
- ☆54Oct 6, 2025Updated 9 months ago
- LSASS memory dumper using only NTAPIs, creating a minimal minidump. It can be compiled as shellcode (PIC), supports XOR encryption, and r…☆387Apr 26, 2025Updated last year
- ebpf WebShell/内核马,一种新型内核马/WebShell技术☆353Jan 8, 2024Updated 2 years ago
- Exploits for CNEXT (CVE-2024-2961), a buffer overflow in the glibc's iconv()☆504Sep 30, 2024Updated last year
- DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely☆386Dec 13, 2024Updated last year
- CVE-2024-38200 & CVE-2024-43609 - Microsoft Office NTLMv2 Disclosure Vulnerability☆146Jan 13, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Tool to start a python http server in a simple way☆11Mar 30, 2022Updated 4 years ago
- Blog Post: https://blog.doyensec.com/2025/10/08/ksmbd-3.html☆20Oct 8, 2025Updated 9 months ago
- Ivanti EPM AgentPortal RCE Vulnerability☆20Sep 16, 2024Updated last year
- CVE-2025-30208-EXP☆196Apr 1, 2025Updated last year
- ☆39Dec 14, 2024Updated last year
- CVE-2025-32433 https://github.com/erlang/otp/security/advisories/GHSA-37cp-fgq5-7wc2☆142Aug 2, 2025Updated 11 months ago
- Nacos Derby命令执行漏洞利用脚本☆154Apr 7, 2025Updated last year