kpcyrd / sh4d0wup
Signing-key abuse and update exploitation framework
☆125Updated last week
Alternatives and similar repositories for sh4d0wup:
Users that are interested in sh4d0wup are comparing it to the libraries listed below
- Get root via TTY / TIOCSTI stuffing☆71Updated 9 months ago
- clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerabil…☆99Updated 2 years ago
- Quick network scanner library. https://crates.io/crates/qscan☆84Updated 2 years ago
- A Golang Discord C2 unlike any other. DCVC2 uses RTP packets over a voice channel to transmit all data leaving no operational traces in t…☆129Updated 5 months ago
- Linux Enumeration / Privilege escalation tool☆23Updated 4 years ago
- Rust Weaponization for Red Team Engagements.☆27Updated 2 years ago
- Rust in-memory dumper☆108Updated last year
- RDE1 (Rusty Data Exfiltrator) is client and server tool allowing auditor to extract files from DNS and HTTPS protocols written in Rust. �…☆39Updated 2 weeks ago
- Multi-threaded Padding Oracle attacks against any service. Written in Rust.☆97Updated 2 years ago
- Cloud Exploit Framework☆113Updated 2 years ago
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆85Updated 2 years ago
- eBPF hacks☆186Updated 4 months ago
- nysm is a stealth post-exploitation container.☆246Updated last year
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆63Updated 6 months ago
- GTFOArgs is a curated list of programs and their associated arguments that can be exploited to gain privileged access or execute arbitrar…☆125Updated 5 months ago
- POC for DLL Proxying / Hijacking☆60Updated last month
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆107Updated last week
- C2 Automation using Linode☆80Updated 2 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆63Updated last year
- Detect and remove the presence of canary tokens☆20Updated last year
- WallEscape vulnerability in util-linux☆51Updated last year
- A Python gRPC Client Library for Sliver☆69Updated last week
- HardeningMeter is an open-source Python tool carefully designed to comprehensively assess the security hardening of binaries and systems.☆62Updated 4 months ago
- CLI & library to search for default credentials among thousands of Products / Vendors☆50Updated 2 months ago
- A proof-of-concept C2 channel through DuckDuckGo's image proxy service☆74Updated last year
- Executables on Disk? Bleh 🤮☆100Updated last year
- IVRE's fork of the famous TCP port scanner. See below for details.☆40Updated 2 months ago
- Remote Command executor☆74Updated 2 years ago
- ShuckNT is the script of Shuck.sh online service for on-premise use. It is design to dowgrade, convert, dissect and shuck authentication …☆69Updated 6 months ago
- An ssh honeypot with the XZ backdoor. CVE-2024-3094☆141Updated last year