
windiff
Tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS, using a Web UI…

Tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS, using a Web UI…

Driver Initial Reconnaissance Tool

Automated defect verification tool for 6 dnsmasq CVEs (CVE-2026-2291, 4890, 4891, 4892, 4893, 5172)

The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules,…

Analyze and demonstrate the local privilege escalation vulnerability (CVE-2025-68921) in Nahimic audio software on gaming laptops, with automated…

Kernel pointers copied to output user mode buffer with ioctl 0x22A014 in the appid.sys driver.

Find Electron Apps Vulnerable to CVE-2023-4863 / CVE-2023-5129

PunkBuster LPI to NT AUTHORITY\SYSTEM

Fuzzing the Microsoft Windows DNS client library. Inspired by CVE-2026-41096.

Patched version of dnstracer fixing CVE-2017-9430 stack-based buffer overflow via argv[0] length validation. Traces DNS server chains for hostname…

Create fake certs for binaries using windows binaries and the power of bat files

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.

Kernel Stack info leak at exportObjectToClient function

Proof-of-concept exploit for CVE-2021-1656, an information disclosure vulnerability in the Windows TPM driver (tpm.sys). Demonstrates kernel memory…

POC for CVE-2021-1699

POC For CVE-2022-24483

A zero-symbol static analysis engine that extracts and mathematically ranks the Windows RPC attack surface using an AHP-based risk model.