POCs for CVE-2025-50154 and CVE-2025-59214, zero day vulnerabilities on windows file explorer disclosing NTLMv2-SSP without user interaction. It is a bypass for the CVE-2025-24054 Security Patch
☆55Oct 16, 2025Updated 11 months ago
Alternatives and similar repositories for CVE-2025-50154
Users that are interested in CVE-2025-50154 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Proof-of-Concept software for creating inbound AD forest trusts.☆20Jun 25, 2025Updated last year
- A C project that generates usernames based on input lists and format you decide yourself☆12Jun 29, 2026Updated 3 months ago
- ☆29Feb 11, 2026Updated 7 months ago
- A tool for exploiting Kerberos tickets against system with Credential Guard enabled.☆22Sep 2, 2025Updated last year
- ☆49Apr 9, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆16Aug 12, 2024Updated 2 years ago
- A tool for coercing and relaying Kerberos authentication over DCOM and RPC.☆151Jul 17, 2025Updated last year
- A collector and derivation engine. It maps your environment, evaluates effective permissions and trust, and writes a complete attack grap…☆83Sep 15, 2026Updated 3 weeks ago
- C# implementation of the process injection techniques dubbed "PoolParty"☆18Nov 7, 2025Updated 11 months ago
- An Ansible collection that installs a SCOM deployment with optional configurations.☆24Dec 9, 2025Updated 9 months ago
- Bloodhound python Ingestor using ADWS☆58Aug 27, 2026Updated last month
- An offensive toolkit for restless guests #DEFCON33☆60Aug 11, 2025Updated last year
- ☆55Oct 10, 2023Updated 2 years ago
- Manage Shadows Copies via the VSS API using C#, C++, Crystal or Python. Working on Windows 11☆87Jan 26, 2026Updated 8 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆208Nov 18, 2025Updated 10 months ago
- An Exploitation script developed to exploit the CVE-2023-4966 bleed citrix information disclosure vulnerability☆10Oct 29, 2023Updated 2 years ago
- An HTA Application which builds Azure (Entra) Scenarios for Red Team Simulations☆62Aug 18, 2025Updated last year
- Dockerized nginx app used to create high-level timeline visuals for red team assessments☆36Feb 25, 2026Updated 7 months ago
- PoC script to demonstrate collection of SCCM attack paths that can be viewed in BH with OpenGraph☆26Aug 2, 2025Updated last year
- Red Team Assessment Platform - reporting, visualizations, and analytics for cybersecurity red teams☆34Apr 13, 2026Updated 5 months ago
- PoC for CVE-2025-4660 demonstrating exploitation of the Forescout SecureConnector on Windows☆16Jul 16, 2025Updated last year
- An OpenGraph extension for secrets☆22Aug 11, 2026Updated last month
- a small script to collect information from a management point☆37Jan 19, 2026Updated 8 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆16Jan 9, 2025Updated last year
- Bunch of BOF files☆44Jun 30, 2025Updated last year
- A comprehensive list of usable Entra ID first-party clients with pre-consented Microsoft Graph scopes, in a simple YAML-file explorable w…☆169Mar 20, 2026Updated 6 months ago
- Kernel Information Disclosure☆35Jan 13, 2026Updated 8 months ago
- Lurker is a cross-platform, companion implant to Cobalt Strike built with Go☆33Mar 27, 2026Updated 6 months ago
- Querying And Deleting Shadow Copies Using The IOCTL_VOLSNAP_QUERY_NAMES_OF_SNAPSHOTS & IOCTL_VOLSNAP_DELETE_SNAPSHOT IOCTLs☆22Aug 7, 2025Updated last year
- Ludus role for deploying a Cobalt Strike Teamserver onto Linux servers☆19Mar 19, 2025Updated last year
- Safe Harbor is a BOF that streamlines process reconnaissance for red team operations by identifying trusted, low-noise targets to maintai…☆81Oct 27, 2025Updated 11 months ago
- CAPSlock is an offline Conditional Access (CA) analysis tool built on top of a roadrecon database. It helps defenders, auditors, and red …☆96Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- IP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare☆303Jul 30, 2026Updated 2 months ago
- A simple to use single-include Windows API resolver☆22Jul 9, 2024Updated 2 years ago
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 10 months ago
- powershell version of hawktrace POC exploit☆18Oct 27, 2025Updated 11 months ago
- SOAPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) through a SOCKS5 pr…☆217Aug 13, 2026Updated last month
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆191May 31, 2026Updated 4 months ago
- Powershell and python utilties for Entra Connect☆30Jun 5, 2025Updated last year