pwnfuzz / POCsLinks
Proof Of Concepts
☆53Updated 3 months ago
Alternatives and similar repositories for POCs
Users that are interested in POCs are comparing it to the libraries listed below
Sorting:
- Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆101Updated last year
- PfSense Stored XSS lead to Arbitrary Code Execution exploit☆48Updated 10 months ago
- Proof of Concept Exploit for CVE-2024-9464☆45Updated last year
- List of some AD tools I frequently use☆50Updated 2 weeks ago
- Java archive implant toolkit.☆61Updated 7 months ago
- ☆35Updated last year
- ysoserial.net docker image☆28Updated last year
- ☆59Updated last year
- ☆72Updated last year
- Repo for all my exploits/PoCs☆53Updated 6 months ago
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆87Updated 8 months ago
- Custom Amsi Bypass by patching AmsiOpenSession function in amsi.dll☆45Updated 5 months ago
- Veeam Backup Enterprise Manager Authentication Bypass (CVE-2024-29849)☆90Updated last year
- Small toolkit for extracting information and dumping sensitive strings from Windows processes☆116Updated last year
- Exploits Unauth Docker API☆42Updated 7 months ago
- A small red team course☆40Updated 2 years ago
- ☆44Updated last month
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆24Updated last year
- SANS Workshop: Active Directory Privilege Escalation with Empire!☆33Updated last week
- RCE through a race condition in Apache Tomcat☆56Updated 10 months ago
- CVE-2025-24016: Wazuh Unsafe Deserialization Remote Code Execution (RCE)☆41Updated 9 months ago
- This is a GRE PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion☆90Updated 2 months ago
- ☆68Updated 10 months ago
- Fully automated windows credentials dumper, for SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with…☆78Updated last year
- ☆62Updated last year
- Deploy a phishing infrastructure on the fly.☆78Updated 10 months ago
- ☆64Updated last year
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆41Updated 9 months ago
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆60Updated 4 months ago
- PoC that downloads an executable from a public SSL certificate☆131Updated 3 months ago