smokeintheshell / CVE-2023-20198
CVE-2023-20198 Exploit PoC
☆46Updated last year
Alternatives and similar repositories for CVE-2023-20198:
Users that are interested in CVE-2023-20198 are comparing it to the libraries listed below
- Exploit for CVE-2023-27532 against Veeam Backup & Replication☆111Updated 2 years ago
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆44Updated 2 years ago
- Proof-of-concept exploit for CVE-2024-25153.☆42Updated last year
- The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment …☆44Updated 2 years ago
- Dump Windows SAM hashes☆42Updated last year
- Lateral Movement☆123Updated last year
- ☆49Updated 2 years ago
- A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.☆90Updated last year
- POC for Veeam Backup and Replication CVE-2023-27532☆63Updated 2 years ago
- ☆65Updated 3 months ago
- Duplicate not owned Token from Running Process☆72Updated last year
- Tool for MSSQL relay audit and abuse☆46Updated 4 months ago
- ☆86Updated last year
- ☆86Updated last year
- this script adds the ability to encode shellcode (.bin) in XOR,chacha20, AES. You can choose between 2 loaders (Myph / 221b)☆82Updated last year
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆81Updated 3 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆64Updated last year
- Golden collection of weak passwords☆62Updated 4 months ago
- This code bypass AMSI by setting JE instruction to JNE in assembly of amsi.dll file☆36Updated 2 years ago
- To audit the security of read-only domain controllers☆115Updated last year
- Crackmapexec custom scripts used in my internal pentests.☆25Updated last year
- List of some AD tools I frequently use☆45Updated 3 months ago
- Veeam Backup Enterprise Manager Authentication Bypass (CVE-2024-29849)☆87Updated 10 months ago
- Tool for efficient directory enumeration☆56Updated 6 months ago
- ☆56Updated last year
- ☆56Updated 5 months ago
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆80Updated 7 months ago
- ☆79Updated 8 months ago
- .NET deserialization hunter☆77Updated 9 months ago
- DCSync Attack from Outside using Impacket☆112Updated 3 years ago