[Linux] Two Privilege Escalation techniques abusing sudo token
☆731Apr 14, 2019Updated 7 years ago
Alternatives and similar repositories for sudo_inject
Users that are interested in sudo_inject are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Linux privilege escalation exploit via snapd (CVE-2019-7304)☆685May 9, 2019Updated 7 years ago
- Some of my exploits.☆602Feb 25, 2021Updated 5 years ago
- PoC code for CVE-2019-0841 Privilege Escalation vulnerability☆242Apr 9, 2019Updated 7 years ago
- A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts t…☆2,779Dec 18, 2021Updated 4 years ago
- DEPRECATED SharpRoast is a C# port of various PowerView's Kerberoasting functionality.☆251Sep 25, 2018Updated 7 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Red Team Scripts by d0nkeys (ex SnadoTeam)☆699Jul 27, 2020Updated 5 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆1,639Jul 10, 2023Updated 2 years ago
- Chashell is a Go reverse shell that communicates over DNS. It can be used to bypass firewalls or tightly restricted networks.☆1,083Apr 5, 2022Updated 4 years ago
- Active Directory Integrated DNS dumping by any authenticated user☆1,164Apr 4, 2025Updated last year
- ☆299Nov 9, 2020Updated 5 years ago
- Privilege Escalation Project - Windows / Linux / Mac☆2,604Oct 4, 2024Updated last year
- A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specifi…☆2,463Mar 11, 2026Updated 2 months ago
- C# Targeted Attack Reconnissance Tools☆120Jan 11, 2021Updated 5 years ago
- Bypassing disabled exec functions in PHP (c) CRLF☆405Oct 2, 2020Updated 5 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- PowerShell MachineAccountQuota and DNS exploit tools☆1,463Jan 11, 2023Updated 3 years ago
- Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys☆660Feb 1, 2025Updated last year
- There is no pre-auth RCE in Jenkins since May 2017, but this is the one!☆608May 17, 2019Updated 7 years ago
- An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.☆305Sep 7, 2022Updated 3 years ago
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆210Mar 10, 2019Updated 7 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆324Mar 26, 2019Updated 7 years ago
- HTA encryption tool for RedTeams☆1,424Nov 9, 2022Updated 3 years ago
- Proof of concept for CVE-2019-0708☆1,183Mar 16, 2026Updated 2 months ago
- Extracting Clear Text Passwords from mstsc.exe using API Hooking.☆1,446Jul 20, 2024Updated last year
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Privilege Escalation: Weaponizing CVE-2019-1405 and CVE-2019-1322☆348Nov 14, 2019Updated 6 years ago
- A tool to abuse Exchange services☆2,304Jun 10, 2024Updated last year
- SharPyShell - tiny and obfuscated ASP.NET webshell for C# web applications☆1,064Nov 26, 2023Updated 2 years ago
- Automation for internal Windows Penetrationtest / AD-Security☆3,664Aug 28, 2025Updated 8 months ago
- Jenkins RCE PoC. From unauthenticated user to remote code execution, it's a hacker's dream!☆298Jun 10, 2019Updated 6 years ago
- ntlm relay attack to Exchange Web Services☆333Jan 15, 2018Updated 8 years ago
- Token Privilege Research☆881Sep 1, 2017Updated 8 years ago
- Payload Generation Framework☆1,982Aug 21, 2024Updated last year
- Powershell script for enumerating vulnerable DCOM Applications☆266Nov 30, 2018Updated 7 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Enumerate missing KBs and suggest exploits for useful Privilege Escalation vulnerabilities☆1,672Nov 28, 2020Updated 5 years ago
- Perform a MitM attack and extract clear text credentials from RDP connections☆1,456Nov 20, 2025Updated 6 months ago
- New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.☆974Dec 29, 2017Updated 8 years ago
- Auto Root Exploit Tool☆535Jun 15, 2023Updated 2 years ago
- Tool to extract Kerberos tickets from Linux kernel keys.☆240May 28, 2019Updated 6 years ago
- Process Injection☆767Oct 24, 2021Updated 4 years ago
- Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans☆583Sep 7, 2021Updated 4 years ago