k0x-offsec / CDPwnLinks
CDPwn is a python script designed to capture screenshots of files via the Chrome DevTools Protocol (CDP), a technique useful for privilege escalation when the CDP service runs with root permissions.
☆12Updated last year
Alternatives and similar repositories for CDPwn
Users that are interested in CDPwn are comparing it to the libraries listed below
Sorting:
- CVE-2024-41570: Havoc C2 0.7 Teamserver SSRF exploit☆75Updated 10 months ago
- ☆17Updated 6 months ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆27Updated last year
- List of some AD tools I frequently use☆47Updated last month
- ☆68Updated 5 months ago
- Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409) exploit☆79Updated 9 months ago
- CVE-2023-21554 Windows MessageQueuing PoC,分析见 https://www.zoemurmure.top/posts/cve_2023_21554/☆57Updated 2 years ago
- Burp Extension to add additional functionality for pentesting websocket based applications☆95Updated last year
- Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆96Updated last year
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆64Updated last year
- Golden collection of weak passwords☆63Updated 7 months ago
- Proof of conept to exploit vulnerable proxycommand configurations on ssh clients☆19Updated last year
- PoCs of RCEs against open source C2 servers☆86Updated 9 months ago
- Exploits targeting vBulletin.☆76Updated 2 years ago
- OpenSSH Pre-Auth Double Free CVE-2023-25136 POC☆45Updated 2 years ago
- Exploit for the CVE-2024-5806☆45Updated last year
- CVE-2023-20198-RCE, support adding/deleting users and executing cli commands/system commands.☆39Updated last year
- KrbRoastParser is a tool for parsing Kerberos packets from pcap files to extract AS-REQ, AS-REP and TGS-REP hashes☆29Updated 8 months ago
- ☆59Updated last year
- Authentication Bypass in GoAnywhere MFT☆61Updated last year
- Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.☆55Updated last year
- Exploit for CVE-2024-20767 - Adobe ColdFusion☆34Updated 6 months ago
- ☆25Updated 7 months ago
- CVE-2021-34473 Microsoft Exchange Server Remote Code Execution Vulnerability☆42Updated 3 years ago
- Small toolkit for extracting information and dumping sensitive strings from Windows processes☆114Updated 11 months ago
- .NET deserialization hunter☆77Updated 11 months ago
- Slip is a CLI tool to create malicious archive files containing path traversal payloads. It supports zip, tar, 7z and zip-like (jar, war,…☆103Updated last month
- ☆70Updated last year
- CVE-2023-33733 reportlab RCE☆119Updated last year