k0x-offsec / CDPwnLinks
CDPwn is a python script designed to capture screenshots of files via the Chrome DevTools Protocol (CDP), a technique useful for privilege escalation when the CDP service runs with root permissions.
☆14Updated last year
Alternatives and similar repositories for CDPwn
Users that are interested in CDPwn are comparing it to the libraries listed below
Sorting:
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆34Updated 2 years ago
- ☆18Updated last year
- Deserialization payload generator for a variety of .NET formatters☆176Updated 2 months ago
- CVE-2024-41570: Havoc C2 0.7 Teamserver SSRF exploit☆74Updated last year
- Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409) exploit☆83Updated last year
- List of some AD tools I frequently use☆56Updated 3 months ago
- ☆54Updated 4 months ago
- Golden collection of weak passwords☆71Updated last year
- ☆68Updated last year
- CVE-2023-33733 reportlab RCE☆120Updated 2 years ago
- PoCs of RCEs against open source C2 servers☆91Updated last year
- Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.☆56Updated 2 years ago
- ☆39Updated 10 months ago
- ysoserial.net docker image☆28Updated last year
- FortiWeb CVE-2025-25257 exploit☆63Updated 7 months ago
- Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)☆91Updated last year
- Exploit for the CVE-2024-5806☆45Updated last year
- ☆13Updated 5 years ago
- VMware Aria Operations for Logs CVE-2023-34051☆61Updated 2 years ago
- ☆73Updated last year
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆90Updated 2 years ago
- Dockerized POC for CVE-2022-42889 Text4Shell☆76Updated 3 years ago
- Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆125Updated 2 years ago
- CVE-2021-34473 Microsoft Exchange Server Remote Code Execution Vulnerability☆41Updated 3 years ago
- POC for CVE-2022-47966 affecting multiple ManageEngine products☆128Updated 3 years ago
- CVE-2025-1974☆90Updated 10 months ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated 2 years ago
- Abusing SSRF to deliver an authenticated command injection payload☆30Updated 5 months ago
- Exploits targeting vBulletin.☆75Updated 2 years ago
- cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text ver…☆39Updated 3 years ago