horizon3ai / proxyshell
Proof of Concept for CVE-2021-34473, CVE-2021-34523, and CVE-2021-31207
☆108Updated last year
Alternatives and similar repositories for proxyshell:
Users that are interested in proxyshell are comparing it to the libraries listed below
- Automatic ProxyShell Exploit☆112Updated 3 years ago
- GUI alternative to the Rubeus command line tool, for all your Kerberos exploit requirements☆180Updated 3 years ago
- MSSQL Database Attacker tool☆190Updated 2 years ago
- A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.☆110Updated 3 weeks ago
- Webmin <=1.984, CVE-2022-0824 Post-Auth Reverse Shell PoC☆111Updated 2 years ago
- The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment …☆44Updated 2 years ago
- CVE-2022-41040 - Server Side Request Forgery (SSRF) in Microsoft Exchange Server☆88Updated 2 years ago
- PoC for CVE-2022-26809, analisys and considerations are shown in the github.io.☆107Updated 2 years ago
- DCSync Attack from Outside using Impacket☆112Updated 2 years ago
- ☆33Updated 2 years ago
- Exploiting CVE-2021-44228 in vCenter for remote code execution and more.☆104Updated 3 years ago
- POC for CVE-2022-47966 affecting multiple ManageEngine products☆126Updated 2 years ago
- Cobalt Strike Aggressor Script that Performs System/AV/EDR Recon☆323Updated 2 years ago
- Atlassian Bitbucket Data Center RCE(CVE-2022-26133) verification.☆146Updated 2 years ago
- Impacket is a collection of Python classes for working with network protocols.☆39Updated 3 years ago
- Windows Privilege Escalation☆54Updated 2 years ago
- Apache Spark Shell Command Injection Vulnerability☆88Updated 2 years ago
- ☆154Updated 2 years ago
- Python3 script to quickly get various information from a domain controller through his LDAP service.☆199Updated 2 months ago
- CVE-2021-40444☆64Updated 3 years ago
- MS-FSRVP coercion abuse PoC☆282Updated 3 years ago
- A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.☆125Updated last year
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆81Updated 3 years ago
- Impacket is a collection of Python classes for working with network protocols.☆68Updated 6 months ago
- CVE-2021-27928 MariaDB/MySQL-'wsrep provider' 命令注入漏洞☆62Updated last year
- CVE-2023-0669 GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to des…☆100Updated 10 months ago
- Collection of username lists for enumerating kerberos domain users☆86Updated 7 years ago
- Some Attacks of Exchange SSRF ProxyLogon&ProxyShell☆165Updated 3 years ago
- Encrypting shellcode to Bypass AV☆72Updated 6 years ago
- Active Directory password spraying tool. Auto fetches user list and avoids potential lockouts.☆127Updated 3 years ago