POCs for CVE-2025-50154 and CVE-2025-59214, zero day vulnerabilities on windows file explorer disclosing NTLMv2-SSP without user interaction. It is a bypass for the CVE-2025-24054 Security Patch
☆55Oct 16, 2025Updated 10 months ago
Alternatives and similar repositories for CVE-2025-50154
Users that are interested in CVE-2025-50154 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Proof-of-Concept software for creating inbound AD forest trusts.☆21Jun 25, 2025Updated last year
- A C project that generates usernames based on input lists and format you decide yourself☆12Jun 29, 2026Updated 2 months ago
- ☆29Feb 11, 2026Updated 6 months ago
- A tool for exploiting Kerberos tickets against system with Credential Guard enabled.☆18Sep 2, 2025Updated 11 months ago
- ☆49Apr 9, 2025Updated last year
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- ☆16Aug 12, 2024Updated 2 years ago
- A tool for coercing and relaying Kerberos authentication over DCOM and RPC.☆151Jul 17, 2025Updated last year
- C# implementation of the process injection techniques dubbed "PoolParty"☆17Nov 7, 2025Updated 9 months ago
- An Ansible collection that installs a SCOM deployment with optional configurations.☆24Dec 9, 2025Updated 8 months ago
- An offensive toolkit for restless guests #DEFCON33☆60Aug 11, 2025Updated last year
- ☆55Oct 10, 2023Updated 2 years ago
- Bloodhound python Ingestor using ADWS☆54Updated this week
- Manage Shadows Copies via the VSS API using C#, C++, Crystal or Python. Working on Windows 11☆86Jan 26, 2026Updated 7 months ago
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆210Nov 18, 2025Updated 9 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- An Exploitation script developed to exploit the CVE-2023-4966 bleed citrix information disclosure vulnerability☆10Oct 29, 2023Updated 2 years ago
- An HTA Application which builds Azure (Entra) Scenarios for Red Team Simulations☆63Aug 18, 2025Updated last year
- Dockerized nginx app used to create high-level timeline visuals for red team assessments☆32Feb 25, 2026Updated 6 months ago
- Red Team Assessment Platform - reporting, visualizations, and analytics for cybersecurity red teams☆34Apr 13, 2026Updated 4 months ago
- PoC for CVE-2025-4660 demonstrating exploitation of the Forescout SecureConnector on Windows☆16Jul 16, 2025Updated last year
- PoC script to demonstrate collection of SCCM attack paths that can be viewed in BH with OpenGraph☆26Aug 2, 2025Updated last year
- a small script to collect information from a management point☆37Jan 19, 2026Updated 7 months ago
- ☆16Jan 9, 2025Updated last year
- Bunch of BOF files☆45Jun 30, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- An OpenGraph extension for secrets☆21Aug 11, 2026Updated 2 weeks ago
- A comprehensive list of usable Entra ID first-party clients with pre-consented Microsoft Graph scopes, in a simple YAML-file explorable w…☆166Mar 20, 2026Updated 5 months ago
- Kernel Information Disclosure☆35Jan 13, 2026Updated 7 months ago
- Lurker is a cross-platform, companion implant to Cobalt Strike built with Go☆33Mar 27, 2026Updated 5 months ago
- Querying And Deleting Shadow Copies Using The IOCTL_VOLSNAP_QUERY_NAMES_OF_SNAPSHOTS & IOCTL_VOLSNAP_DELETE_SNAPSHOT IOCTLs☆22Aug 7, 2025Updated last year
- Ludus role for deploying a Cobalt Strike Teamserver onto Linux servers☆19Mar 19, 2025Updated last year
- Safe Harbor is a BOF that streamlines process reconnaissance for red team operations by identifying trusted, low-noise targets to maintai…☆81Oct 27, 2025Updated 10 months ago
- IP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare☆299Jul 30, 2026Updated 3 weeks ago
- CAPSlock is an offline Conditional Access (CA) analysis tool built on top of a roadrecon database. It helps defenders, auditors, and red …☆94May 16, 2026Updated 3 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- A simple to use single-include Windows API resolver☆22Jul 9, 2024Updated 2 years ago
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 9 months ago
- powershell version of hawktrace POC exploit☆18Oct 27, 2025Updated 10 months ago
- SOAPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) through a SOCKS5 pr…☆214Aug 13, 2026Updated 2 weeks ago
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆188May 31, 2026Updated 2 months ago
- Powershell and python utilties for Entra Connect☆29Jun 5, 2025Updated last year
- ☆18May 30, 2025Updated last year