[Linux] Two Privilege Escalation techniques abusing sudo token
☆732Apr 14, 2019Updated 7 years ago
Alternatives and similar repositories for sudo_inject
Users that are interested in sudo_inject are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Linux privilege escalation exploit via snapd (CVE-2019-7304)☆683May 9, 2019Updated 6 years ago
- Some of my exploits.☆602Feb 25, 2021Updated 5 years ago
- PoC code for CVE-2019-0841 Privilege Escalation vulnerability☆242Apr 9, 2019Updated 7 years ago
- A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts t…☆2,755Dec 18, 2021Updated 4 years ago
- DEPRECATED SharpRoast is a C# port of various PowerView's Kerberoasting functionality.☆251Sep 25, 2018Updated 7 years ago
- Deploy open-source AI quickly and easily - Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Red Team Scripts by d0nkeys (ex SnadoTeam)☆702Jul 27, 2020Updated 5 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆1,619Jul 10, 2023Updated 2 years ago
- Chashell is a Go reverse shell that communicates over DNS. It can be used to bypass firewalls or tightly restricted networks.☆1,083Apr 5, 2022Updated 4 years ago
- Active Directory Integrated DNS dumping by any authenticated user☆1,152Apr 4, 2025Updated last year
- Privilege Escalation Project - Windows / Linux / Mac☆2,604Oct 4, 2024Updated last year
- ☆298Nov 9, 2020Updated 5 years ago
- A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specifi…☆2,455Mar 11, 2026Updated last month
- C# Targeted Attack Reconnissance Tools☆120Jan 11, 2021Updated 5 years ago
- Bypassing disabled exec functions in PHP (c) CRLF☆405Oct 2, 2020Updated 5 years ago
- Deploy open-source AI quickly and easily - Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- PowerShell MachineAccountQuota and DNS exploit tools☆1,450Jan 11, 2023Updated 3 years ago
- Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys☆661Feb 1, 2025Updated last year
- There is no pre-auth RCE in Jenkins since May 2017, but this is the one!☆608May 17, 2019Updated 6 years ago
- An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.☆305Sep 7, 2022Updated 3 years ago
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆210Mar 10, 2019Updated 7 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆328Mar 26, 2019Updated 7 years ago
- HTA encryption tool for RedTeams☆1,425Nov 9, 2022Updated 3 years ago
- Proof of concept for CVE-2019-0708☆1,187Mar 16, 2026Updated last month
- Extracting Clear Text Passwords from mstsc.exe using API Hooking.☆1,437Jul 20, 2024Updated last year
- Deploy open-source AI quickly and easily - Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Privilege Escalation: Weaponizing CVE-2019-1405 and CVE-2019-1322☆352Nov 14, 2019Updated 6 years ago
- A tool to abuse Exchange services☆2,303Jun 10, 2024Updated last year
- SharPyShell - tiny and obfuscated ASP.NET webshell for C# web applications☆1,059Nov 26, 2023Updated 2 years ago
- Automation for internal Windows Penetrationtest / AD-Security☆3,653Aug 28, 2025Updated 7 months ago
- Jenkins RCE PoC. From unauthenticated user to remote code execution, it's a hacker's dream!☆298Jun 10, 2019Updated 6 years ago
- Token Privilege Research☆877Sep 1, 2017Updated 8 years ago
- Payload Generation Framework☆1,973Aug 21, 2024Updated last year
- ntlm relay attack to Exchange Web Services☆333Jan 15, 2018Updated 8 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆265Nov 30, 2018Updated 7 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Enumerate missing KBs and suggest exploits for useful Privilege Escalation vulnerabilities☆1,666Nov 28, 2020Updated 5 years ago
- Perform a MitM attack and extract clear text credentials from RDP connections☆1,451Nov 20, 2025Updated 4 months ago
- New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.☆971Dec 29, 2017Updated 8 years ago
- Auto Root Exploit Tool☆536Jun 15, 2023Updated 2 years ago
- Tool to extract Kerberos tickets from Linux kernel keys.☆239May 28, 2019Updated 6 years ago
- Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans☆584Sep 7, 2021Updated 4 years ago
- Process Injection☆767Oct 24, 2021Updated 4 years ago