puzzlepeaches / Log4jCenter
Exploiting CVE-2021-44228 in vCenter for remote code execution and more.
☆104Updated 3 years ago
Alternatives and similar repositories for Log4jCenter:
Users that are interested in Log4jCenter are comparing it to the libraries listed below
- Proof of Concept for CVE-2021-34473, CVE-2021-34523, and CVE-2021-31207☆108Updated last year
- The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment …☆44Updated 2 years ago
- PoC for CVE-2022-26809, analisys and considerations are shown in the github.io.☆107Updated 2 years ago
- Impacket is a collection of Python classes for working with network protocols.☆39Updated 3 years ago
- Impacket is a collection of Python classes for working with network protocols.☆41Updated 3 years ago
- CVE-2021-40444☆64Updated 3 years ago
- GUI alternative to the Rubeus command line tool, for all your Kerberos exploit requirements☆180Updated 3 years ago
- Webmin <=1.984, CVE-2022-0824 Post-Auth Reverse Shell PoC☆111Updated 2 years ago
- A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.☆110Updated 2 weeks ago
- Active Directory password spraying tool. Auto fetches user list and avoids potential lockouts.☆127Updated 3 years ago
- ☆33Updated 2 years ago
- CVE-2022-41040 - Server Side Request Forgery (SSRF) in Microsoft Exchange Server☆88Updated 2 years ago
- cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text ver…☆39Updated 2 years ago
- MSSQL Database Attacker tool☆190Updated 2 years ago
- Automatic ProxyShell Exploit☆112Updated 3 years ago
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆39Updated 2 years ago
- Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.☆123Updated last year
- Exploit for CVE-2023-27532 against Veeam Backup & Replication☆106Updated last year
- DCSync Attack from Outside using Impacket☆112Updated 2 years ago
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆81Updated 2 years ago
- A webshell application and interactive shell for pentesting Apache Tomcat servers.☆99Updated this week
- A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.☆81Updated last year
- Microsoft Exchange password spray tool with proxy support.☆40Updated 3 years ago
- POC for CVE-2022-47966 affecting multiple ManageEngine products☆126Updated 2 years ago
- CVE-2021-38647 - POC to exploit unauthenticated RCE #OMIGOD☆68Updated 3 years ago
- Aggrokatz is an aggressor plugin extension for Cobalt Strike which enables pypykatz to interface with the beacons remotely and allows it …☆157Updated 3 years ago
- PickleC2 is a post-exploitation and lateral movements framework☆87Updated 3 years ago
- Checks for signature requirements over LDAP☆96Updated 2 years ago
- CVE-2022-1388 F5 BIG-IP iControl REST RCE☆35Updated 2 years ago
- Proof-of-concept exploit for CVE-2021-26855 and CVE-2021-27065. Unauthenticated RCE in Exchange.☆45Updated 3 years ago