#1Tools for acquiring, preserving, and analyzing digital evidence for legal or investigative purposes.
Kitploit recommended

CVE-2021-44228 DFIR Notes
Example of exploiting CVE-2011-3026 on Firefox (Linux/x86)

Proof-of-concept exploit for CVE-2021-31956, a Windows kernel NTFS elevation-of-privilege vulnerability. Demonstrates exploitation techniques…

CVE-2020-15999

PoC and analysis of CVE-2019-2215, a use-after-free in Android Binder, with kernel instrumentation and exploit tuning for affected Samsung devices.

PEAK Baseline Threat Hunt dashboards for Security Onion 3.0 — covering DNS, HTTP, TLS, SMB, Kerberos, SSH, RDP, DCE/RPC, LDAP, Modbus, DNP3,…

Sources of Synacktiv's challenge for leHack 2026

CVE-2023-6931 kernel panic PoC

Tutorial of CVE-2022-37969 with focus on the methodology of Kernel exploitation, not CVE's internal causes

CVE-2025-65320 proof-of-concept demonstrating cleartext license key extraction from process memory via debugger attachment, enabling software…

Speculative Load Hazards Boost Rowhammer and Cache Attacks - CVE-2019-0162 -

Proof-of-concept exploit for CVE-2021-30573, a use-after-free vulnerability in Google Chrome's GPU component allowing remote heap corruption via…

Detection of malicious VHD files for CVE-2025-24985

CVE-2024-29050 is a vulnerability found in the Windows Cryptographic Services.

This repo contains my python script version of CVE-2025-14847 (MongoBleed)

Use CVE-2016-3308 corrupt win32k desktop heap

This is a workaround for CVE-2014-0993 and CVE-2014-0994 that patches on memory without the need to recompile your vulnerable software. This is not…

Complete analysis of CVE-2025-21298, a double free vulnerability related to ole32 library in windows.