
bl_sbx
itunesstored & bookassetd sbx escape

itunesstored & bookassetd sbx escape

Demonstration of Abusing the Vulnerable driver AmdTools64.sys for Physical R/W.

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

Rust Weaponization for Red Team Engagements.

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

Curated archive of public proof-of-concept exploits and vulnerability research writeups covering web, binary, and network security, with a focus on…

Proof-of-concept exploit and detailed analysis of CVE-2022-0847 (Dirty Pipe) Linux kernel privilege escalation vulnerability, including Docker…

CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

Proof-of-concept for authenticated OS command injection in TP-Link router firmware. Includes decryption, QEMU-based encryption hook, and 15-character…

🔥 Local Privilege Escalation Exploit for CVE-2025-27591 | Abuses world-writable log dir in Below to gain root via /etc/passwd injection

Remote Access Trojan (RAT) for Windows x64 using a combination of vulnerability CVE-2023-38831 (WinRAR < 6.23 vulnerability) and Shellcode…


Proof-of-concept scripts for three vulnerabilities in Notepad++ <= 8.9.6, patched in v8.9.6.1 (2026-05-26) CVE-2026-48770 / CVE-2026-48778 /…


CVE-2025-49144 PoC for security researchers to test and try.

A demo for cve-2019-12735

Universal local privilege escalation exploit for CVE-2024-1086 targeting Linux kernels v5.14 to v6.6. Provides root shell with 99.4% success rate on…

A proper well structured documentation for getting started with chrome pwning & v8 pwning