POCs for CVE-2025-50154 and CVE-2025-59214, zero day vulnerabilities on windows file explorer disclosing NTLMv2-SSP without user interaction. It is a bypass for the CVE-2025-24054 Security Patch
☆55Oct 16, 2025Updated 9 months ago
Alternatives and similar repositories for CVE-2025-50154
Users that are interested in CVE-2025-50154 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Proof-of-Concept software for creating inbound AD forest trusts.☆21Jun 25, 2025Updated last year
- A C project that generates usernames based on input lists and format you decide yourself☆12Jun 29, 2026Updated last month
- ☆29Feb 11, 2026Updated 5 months ago
- A tool for exploiting Kerberos tickets against system with Credential Guard enabled.☆15Sep 2, 2025Updated 11 months ago
- ☆49Apr 9, 2025Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆16Aug 12, 2024Updated last year
- A tool for coercing and relaying Kerberos authentication over DCOM and RPC.☆151Jul 17, 2025Updated last year
- C# implementation of the process injection techniques dubbed "PoolParty"☆17Nov 7, 2025Updated 9 months ago
- An Ansible collection that installs a SCOM deployment with optional configurations.☆24Dec 9, 2025Updated 8 months ago
- An offensive toolkit for restless guests #DEFCON33☆60Aug 11, 2025Updated 11 months ago
- ☆54Oct 10, 2023Updated 2 years ago
- Bloodhound python Ingestor using ADWS☆52Jun 4, 2026Updated 2 months ago
- Manage Shadows Copies via the VSS API using C#, C++, Crystal or Python. Working on Windows 11☆84Jan 26, 2026Updated 6 months ago
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆209Nov 18, 2025Updated 8 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- An Exploitation script developed to exploit the CVE-2023-4966 bleed citrix information disclosure vulnerability☆10Oct 29, 2023Updated 2 years ago
- An HTA Application which builds Azure (Entra) Scenarios for Red Team Simulations☆63Aug 18, 2025Updated 11 months ago
- Dockerized nginx app used to create high-level timeline visuals for red team assessments☆32Feb 25, 2026Updated 5 months ago
- Red Team Assessment Platform - reporting, visualizations, and analytics for cybersecurity red teams☆34Apr 13, 2026Updated 3 months ago
- PoC for CVE-2025-4660 demonstrating exploitation of the Forescout SecureConnector on Windows☆16Jul 16, 2025Updated last year
- PoC script to demonstrate collection of SCCM attack paths that can be viewed in BH with OpenGraph☆26Aug 2, 2025Updated last year
- a small script to collect information from a management point☆37Jan 19, 2026Updated 6 months ago
- ☆16Jan 9, 2025Updated last year
- Bunch of BOF files☆45Jun 30, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- An OpenGraph extension for secrets☆21Aug 1, 2026Updated last week
- A comprehensive list of usable Entra ID first-party clients with pre-consented Microsoft Graph scopes, in a simple YAML-file explorable w…☆164Mar 20, 2026Updated 4 months ago
- Kernel Information Disclosure☆35Jan 13, 2026Updated 6 months ago
- Lurker is a cross-platform, companion implant to Cobalt Strike built with Go☆33Mar 27, 2026Updated 4 months ago
- Querying And Deleting Shadow Copies Using The IOCTL_VOLSNAP_QUERY_NAMES_OF_SNAPSHOTS & IOCTL_VOLSNAP_DELETE_SNAPSHOT IOCTLs☆22Aug 7, 2025Updated last year
- Ludus role for deploying a Cobalt Strike Teamserver onto Linux servers☆19Mar 19, 2025Updated last year
- Safe Harbor is a BOF that streamlines process reconnaissance for red team operations by identifying trusted, low-noise targets to maintai…☆81Oct 27, 2025Updated 9 months ago
- IP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare☆293Jul 30, 2026Updated last week
- CAPSlock is an offline Conditional Access (CA) analysis tool built on top of a roadrecon database. It helps defenders, auditors, and red …☆93May 16, 2026Updated 2 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- A simple to use single-include Windows API resolver☆22Jul 9, 2024Updated 2 years ago
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 8 months ago
- powershell version of hawktrace POC exploit☆18Oct 27, 2025Updated 9 months ago
- SOAPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) through a SOCKS5 pr…☆212Jun 6, 2026Updated 2 months ago
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆183May 31, 2026Updated 2 months ago
- Powershell and python utilties for Entra Connect☆29Jun 5, 2025Updated last year
- ☆18May 30, 2025Updated last year