horizon3ai / Ivanti-EPM-Coercion-VulnerabilitiesLinks
Proof of concept exploit for Ivanti EPM CVE-2024-13159 and others
☆12Updated 10 months ago
Alternatives and similar repositories for Ivanti-EPM-Coercion-Vulnerabilities
Users that are interested in Ivanti-EPM-Coercion-Vulnerabilities are comparing it to the libraries listed below
Sorting:
- A collection of tools using OCR to extract potential usernames from RDP screenshots.☆30Updated last year
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆40Updated 2 years ago
- ☆13Updated 2 weeks ago
- Identify binaries with Authenticode digital signatures signed to an internal CA/domain☆40Updated last year
- CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection☆33Updated last year
- Command and Control Framework using powershell implants☆35Updated 6 months ago
- Tool to aid in dumping LSASS process remotely☆42Updated 3 months ago
- ☆22Updated 2 years ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆25Updated 3 years ago
- an Improoved Version of 0xNinjaCyclone´s EarlyCascade Code☆22Updated 10 months ago
- List accounts with Service Principal Names (SPN) not linked to active dns records in an Active Directory Domain.☆32Updated 2 weeks ago
- Right-To-Left Override POC☆36Updated 3 years ago
- DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will auto…☆13Updated 5 months ago
- ☆53Updated 2 years ago
- A Python script to find tenant id an region from a list of domain names.☆15Updated 10 months ago
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆32Updated 9 months ago
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- A little implant which SSH's back with a shell☆38Updated 3 years ago
- AWSDoor is a red team automation tool designed to simulate advanced attacker behavior in AWS environments☆29Updated 3 months ago
- ☆40Updated last year
- Docker container for running CobaltStrike 4.10☆37Updated last year
- Exploits Unauth Docker API☆42Updated 8 months ago
- time-based user enum via Basic Auth in Azure against Autodiscover☆33Updated last year
- Ludus role for deploying a Mythic Teamserver onto Linux servers☆23Updated 9 months ago
- A PoC for achieving persistence via push notifications on Windows☆48Updated 2 years ago
- Tools for Attacking Pleasant Password Server☆22Updated 2 years ago
- ☆22Updated 6 months ago
- Nemesis agent for Mythic☆28Updated last week
- Configurable, Community driven, HTTP C2 Profile☆27Updated 6 months ago
- Python scanner for CVE-2022-47966. Supports ~10 of the 24 affected products.☆28Updated 2 years ago