p0dalirius / CVE-2022-45771-Pwndoc-LFI-to-RCE
Pwndoc local file inclusion to remote code execution of Node.js code on the server
☆46Updated last year
Related projects ⓘ
Alternatives and complementary repositories for CVE-2022-45771-Pwndoc-LFI-to-RCE
- A repository with my code snippets for research/education purposes.☆50Updated last year
- A python script to force authentication using MS-RPRN RemoteFindFirstPrinterChangeNotificationEx function (opnum 65).☆20Updated 2 years ago
- A tool for carrying out brute force attacks against Office 365, with built in IP rotation use AWS gateways.☆74Updated 5 months ago
- Brief writeup of post exploitation methodologies.☆17Updated last year
- A script to automatically dump all URLs present in /server-status to a file locally.☆23Updated last month
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆94Updated 5 months ago
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆20Updated 3 months ago
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated 11 months ago
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆43Updated last year
- Duplicate not owned Token from Running Process☆72Updated last year
- Inject RDPThief into memory with PowerShell.☆55Updated last month
- RDE1 (Rusty Data Exfiltrator) is client and server tool allowing auditor to extract files from DNS and HTTPS protocols written in Rust. �…☆40Updated last year
- exfiltration/infiltration toolkit☆23Updated 11 months ago
- ☆12Updated last week
- this script adds the ability to encode shellcode (.bin) in XOR,chacha20, AES. You can choose between 2 loaders (Myph / 221b)☆77Updated 11 months ago
- ☆46Updated 2 years ago
- Tool for Active Directory Certificate Services enumeration and abuse☆64Updated this week
- A collection of python scripts to work with Windows Hives.☆15Updated 2 years ago
- ☆51Updated 9 months ago
- Automatically extract and decrypt all configured scanning credentials of a Lansweeper instance.☆34Updated last month
- A Proof-Of-Concept for the CVE-2023-43770 vulnerability.☆33Updated last year
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆31Updated 2 years ago
- Veeam Backup Enterprise Manager Authentication Bypass (CVE-2024-29849)☆86Updated 5 months ago
- Crackmapexec custom scripts used in my internal pentests.☆25Updated last year
- PowerShell Reverse Shell☆61Updated last year
- ☆25Updated last year
- ☆51Updated last year
- ☆43Updated 4 months ago
- ☆46Updated last year