Security Consultant & Technical Exploitation Officer
Buffer-Overflow-Guide. This Bufferflow Guide includes instructions and the scripts necessary for Buffer Overflow Exploitation. This guide is a supplement for TheCyberMentor's walkthrough. Please watch his walkthrough if you're confused. Feel free to implement Pull Requests or raise Issues.
564badgerDAPS. Brute Ratel LDAP filtering and sorting tool. Easily take BR log output and pull hostnames for ease of use with other red team tooling. Supports OU filtering and removes disabled hosts.
40Agentic-Flow-Corruption-Attacks. A red teaming attack paradigm against AI Agents
34bloudstrike. Linux CS bypass technique
33Serenity. C# DInvoke Shellcode Runner
31CVE-2024-38143. Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability
24Signal-DLL-Hijacking. DLL Malware for Signal Desktop. Now utilizes missing dbghelp.dll since Signal patched cryptbase.
14RokuRogue. A script for brute forcing Roku TVs and installing applications remotely.
13redr0nin. My awesome README.md
4WinterCMS-Exploits. Post-Authenticated Remote Code Execution && Post-Authenticated Stored Cross-Site Scripting in WinterCMS
3HP-LaserJet-3015-Path-Traversal-via-PJL-Protocol. HP LaserJet P3015 printers running firmware up to and including version 07.250.2 are vulnerable to path traversal attacks via the PJL (Printer Job Language) protocol.
3ez-iRZ. Exploit for CVE-2022-27226
2CVE-2021-43032. Post authenticated stored-xss in XenForo versions ≤ 2.2.7
1Jorogumo. Red Team Stored XSS SVG phishing-companion tool with the ability to serve a malicious login page, or clone an html page and implement custom javascript. It then generates a relevant SVG.
1derailed. CVE-2021-40875: Tools to Inspect Gurock Testrail Servers for Vulnerabilities related to CVE-2021-40875.
1