
Kernel_VADInjector
Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

Exploits the Windows Server 2025 dMSA privilege escalation vulnerability to enumerate writable OUs, escalate to arbitrary domain users, extract…

Proof-of-concept exploit for CVE-2026-21003 demonstrating JWT authentication bypass by omitting the kid header and using the 'none' algorithm to…

Proof-of-concept exploit for CVE-2026-73292: CSRF attack on Semaphore UI password change endpoint, serving a malicious page that silently resets an…

See adversary, do adversary: Simple execution of commands for defensive tuning/research (now with more ELF on the shelf)

Crystal port of GodPotato to abuse SeImpersonatePrivilege with indirect syscalls, dynamic API resolution and compile-time string obfuscation. Run…