irsl / gcp-dhcp-takeover-code-exec
Google Compute Engine (GCE) VM takeover via DHCP flood - gain root access by getting SSH keys added by google_guest_agent
☆535Updated 3 years ago
Alternatives and similar repositories for gcp-dhcp-takeover-code-exec:
Users that are interested in gcp-dhcp-takeover-code-exec are comparing it to the libraries listed below
- Private key usage verification☆418Updated last month
- The world's worst kernel module☆296Updated 3 years ago
- Credentials Dumper for Linux using eBPF☆1,128Updated 4 months ago
- Utility to find AES keys in running processes☆333Updated last year
- ☆686Updated last month
- CVE-2022-0185☆366Updated 2 years ago
- PoC for CVE-2021-3156 (sudo heap overflow)☆432Updated 2 years ago
- ☆1,115Updated 4 years ago
- A container analysis and exploitation tool for pentesters and engineers.☆655Updated last year
- Test ssh login key acceptance without having the private key☆215Updated 3 years ago
- Nginx 18.1 04/09/22 zero-day repo☆369Updated 2 years ago
- Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized en…☆1,138Updated 6 months ago
- kCTF is a Kubernetes-based infrastructure for CTF competitions. For documentation, see☆674Updated 4 months ago
- A GNU/Linux monitoring and profiling tool focused on single processes.☆674Updated 3 years ago
- ☆251Updated 4 years ago
- ☆267Updated last year
- A tool for IDN homograph attacks and detection.☆730Updated 3 years ago
- Repository for information about 0-days exploited in-the-wild.☆769Updated 2 months ago
- HTTP Request Smuggling over HTTP/2 Cleartext (h2c)☆676Updated 2 years ago
- all paths lead to clouds☆636Updated last year
- ☆527Updated last year
- A log4j vulnerability filesystem scanner and Go package for analyzing JAR files.☆1,569Updated 2 years ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆209Updated 4 years ago
- HIBA is a system built on top of regular OpenSSH certificate-based authentication that allows to manage flexible authorization of princip…☆374Updated 2 months ago
- PoC exploits for software vulnerabilities☆674Updated 3 years ago
- One-stop TLS traffic inspection and manipulation using dynamic instrumentation☆240Updated 2 years ago
- A PrintNightmare (CVE-2021-34527) Python Scanner. Scan entire subnets for hosts vulnerable to the PrintNightmare RCE☆789Updated 7 months ago
- DNS covert channel implant for Red Teams.☆734Updated 5 years ago
- Proof of concept for CVE-2022-0778, which triggers an infinite loop in parsing X.509 certificates due to a bug in BN_mod_sqrt☆183Updated 2 years ago