ycdxsb / WindowsPrivilegeEscalationLinks
Collection of Windows Privilege Escalation (Analyse/PoC/Exploit)
☆418Updated 7 months ago
Alternatives and similar repositories for WindowsPrivilegeEscalation
Users that are interested in WindowsPrivilegeEscalation are comparing it to the libraries listed below
Sorting:
- LPE exploit for CVE-2023-21768☆421Updated 2 years ago
- LPE exploit for CVE-2023-21768☆490Updated 2 years ago
- Kernel mode WinDbg extension and PoCs for token privilege investigation.☆866Updated 5 months ago
- A reliable exploit + write-up to elevate privileges to root. (Tested on Ubuntu 22.04)☆317Updated 2 years ago
- Adobe Acrobat Reader - CVE-2023-21608 - Remote Code Execution Exploit☆273Updated last year
- This repository includes code and IoCs that are the product of research done in Akamai's various security research teams.☆507Updated last month
- bespoke tooling for offensive security's Windows Usermode Exploit Dev course (OSED)☆558Updated last year
- ☆179Updated 2 years ago
- CWE-781: Improper Address Validation in IOCTL with METHOD_NEITHER I/O Control Code☆347Updated last year
- ☆544Updated last year
- A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.ht…☆646Updated 2 years ago
- Another Windows Local Privilege Escalation from Service Account to System☆871Updated 2 years ago
- A Highly capable Pe Packer☆712Updated 2 years ago
- ☆758Updated last year
- This repo contains C/C++ snippets that can be handy in specific offensive scenarios.☆717Updated 5 months ago
- A modern 32/64-bit position independent implant template☆1,234Updated 3 months ago
- TartarusGate, Bypassing EDRs☆595Updated 3 years ago
- ☆334Updated last year
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆1,190Updated last year
- Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".☆674Updated last month
- ☆197Updated 3 years ago
- Alternative Shellcode Execution Via Callbacks☆1,594Updated 2 years ago
- An EDR bypass that prevents EDRs from hooking or loading DLLs into our process by hijacking the AppVerifier layer☆504Updated last year
- Original C Implementation of the Hell's Gate VX Technique☆1,070Updated 4 years ago
- An Xdbg Plugin of the ERC Library.☆181Updated 2 months ago
- Leaked Windows processes handles identification tool☆288Updated 3 years ago
- Exploit for CVE-2022-21999 - Windows Print Spooler Elevation of Privilege Vulnerability (LPE)☆793Updated 3 years ago
- Sleep Obfuscation☆769Updated last year
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,461Updated 11 months ago
- Local Privilege Escalation from Admin to Kernel vulnerability on Windows 10 and Windows 11 operating systems with HVCI enabled.☆295Updated last year