This is a standalone exploit for a vulnerable feature in Capcom.sys
☆334Sep 18, 2022Updated 3 years ago
Alternatives and similar repositories for ExploitCapcom
Users that are interested in ExploitCapcom are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Proof of concept for abusing SeLoadDriverPrivilege (Privilege Escalation in Windows)☆166Jun 14, 2018Updated 7 years ago
- Capcom Rootkit POC☆215Mar 5, 2017Updated 9 years ago
- Use SE_BACKUP_NAME/SeBackupPrivilege to access objects you shouldn't have access to☆453Jul 29, 2013Updated 12 years ago
- Use CVE-2020-0668 to perform an arbitrary privileged file move operation.☆234Feb 20, 2020Updated 6 years ago
- All of Your Copy/Paste Belong to Us: Stealing the clipboard and using it for C2 communications☆87Feb 21, 2019Updated 7 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GP…☆1,328Dec 15, 2020Updated 5 years ago
- A simple splunk package for obtaining reverse shells on both Windows and most *nix systems.☆146Aug 20, 2018Updated 7 years ago
- Loads a custom dll in system32 via diaghub.☆89Mar 16, 2020Updated 6 years ago
- Native Development Kit for Vista 64bit And Later, by me, Based on NDK Headers 1.0, by Alex Ionescu☆17Dec 6, 2015Updated 10 years ago
- SharpDPAPI is a C# port of some Mimikatz DPAPI functionality.☆1,421Jun 27, 2024Updated last year
- getsystem via parent process using ps1 & embeded c#☆490Oct 26, 2023Updated 2 years ago
- An improvement of the original reflective DLL injection technique by Stephen Fewer of Harmony Security☆342Jul 30, 2017Updated 8 years ago
- Capstone disassembly/disassembler framework: Core (Arm, Arm64, M68K, Mips, PPC, Sparc, SystemZ, X86, X86_64, XCore) + bindings (Python, J…☆15May 18, 2019Updated 7 years ago
- Another Windows Local Privilege Escalation from Service Account to System☆1,169Jan 9, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Python script to enumerate users, groups and computers from a Windows domain through LDAP queries☆967Apr 20, 2022Updated 4 years ago
- Token Privilege Research☆884Sep 1, 2017Updated 8 years ago
- Windows - Weaponizing privileged file writes with the Update Session Orchestrator service☆407Jun 6, 2020Updated 6 years ago
- Python script to decrypt passwords stored by mRemoteNG☆180Jul 6, 2023Updated 2 years ago
- Small POC in powershell exploiting hardlinks during the VM deletion process☆55Jan 18, 2020Updated 6 years ago
- C# and Impacket implementation of PrintNightmare CVE-2021-1675/CVE-2021-34527☆1,985Jul 20, 2021Updated 4 years ago
- A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts t…☆2,787Dec 18, 2021Updated 4 years ago
- Extracts Key Values from .keytab files☆365Aug 26, 2020Updated 5 years ago
- SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, Supe…☆1,320Nov 22, 2022Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Abusing impersonation privileges through the "Printer Bug"☆2,248Sep 10, 2020Updated 5 years ago
- SharpUp is a C# port of various PowerUp functionality.☆1,496Feb 14, 2024Updated 2 years ago
- This script will bruteforce the credential of tomcat manager or host-manager☆36Jun 24, 2020Updated 5 years ago
- Multi-purpose proof-of-concept tool based on CPU-Z CVE-2017-15303☆113Feb 25, 2018Updated 8 years ago
- Defeating Windows User Account Control☆7,618May 22, 2026Updated 2 weeks ago
- Exploit for EfsPotato(MS-EFSR EfsRpcOpenFileRaw with SeImpersonatePrivilege local privalege escalation vulnerability).☆824Dec 14, 2023Updated 2 years ago
- ☆264Feb 17, 2023Updated 3 years ago
- GitLab User Enumeration☆63Jan 3, 2025Updated last year
- ☆17Oct 24, 2016Updated 9 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Phantom DLL hollowing PoC☆371May 23, 2022Updated 4 years ago
- LSASS memory dumper using direct system calls and API unhooking.☆1,583Jan 5, 2021Updated 5 years ago
- Protected Process (Light) Dump: Uses Zemana AntiMalware Engine To Open a Privileged Handle to a PP/PPL Process And Inject MiniDumpWriteDu…☆25Mar 26, 2020Updated 6 years ago
- Active Directory Integrated DNS dumping by any authenticated user☆1,165Apr 4, 2025Updated last year
- User-mode kernel callback framework☆11Nov 16, 2013Updated 12 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆23May 31, 2017Updated 9 years ago
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆961Jul 26, 2021Updated 4 years ago