
RPC-Triage
A zero-symbol static analysis engine that extracts and mathematically ranks the Windows RPC attack surface using an AHP-based risk model.

A zero-symbol static analysis engine that extracts and mathematically ranks the Windows RPC attack surface using an AHP-based risk model.

cldflt.sys information disclosure vulnerability (KB5034765 - KB5035853, Win 11).

Find Electron Apps Vulnerable to CVE-2023-4863 / CVE-2023-5129

Proof-of-concept for CVE-2018-9950, an out-of-bounds read vulnerability in Foxit Reader/PhantomPDF leading to information disclosure and potential…

Proof-of-concept exploit for CVE-2019-1108, an RDP client information disclosure vulnerability that leaks memory contents via specially crafted…

Proof-of-concept exploit for CVE-2022-24483, an information disclosure vulnerability in the Windows kernel's nt!PfpPrivSourceEnum function.…

Proof-of-concept exploit for CVE-2021-1699, an information disclosure vulnerability in the Windows modem.sys driver, demonstrating kernel memory leak…

Proof-of-concept exploit for CVE-2021-1656, an information disclosure vulnerability in the Windows TPM driver (tpm.sys). Demonstrates kernel memory…

Kernel Stack info leak at exportObjectToClient function

Technical disclosure of CVE-2018-15968: an out-of-bounds read vulnerability in Adobe Reader's PDF parsing, enabling information disclosure and…

Proof-of-concept and vulnerability analysis for CVE-2017-0541, demonstrating exploitation techniques and binary-level impact assessment.

CVE-2020-25578 and CVE-2020-25579: Some FreeBSD info leak bugs I found in 2020.

Kernel pointers copied to output user mode buffer with ioctl 0x22A014 in the appid.sys driver.

Exploit for FreeRDP out-of-bounds read vulnerability (CVE-2024-32459) allowing remote information disclosure and potential code execution on…

Exploit code for CVE-2017-8481, a Windows privilege escalation vulnerability.

Proof-of-concept crash file for CVE-2024-24684, demonstrating the vulnerability and aiding in analysis and testing.

Analyze and demonstrate the local privilege escalation vulnerability (CVE-2025-68921) in Nahimic audio software on gaming laptops, with automated…

Windows kernel-mode driver reconnaissance tool that identifies low-privilege accessible drivers, resolves DispatchDeviceControl routines, and maps…