
wasm2c-tableflip
wasm2c sandbox escape. An untrusted WebAssembly module breaks out of the generated C sandbox and executes an arbitrary shell command on the host.

wasm2c sandbox escape. An untrusted WebAssembly module breaks out of the generated C sandbox and executes an arbitrary shell command on the host.

open-source jailbreaking tool for many iOS devices

Copy Fail (CVE-2026-31431): 9-year-old Linux kernel LPE found by Theori's Xint Code

My experiments in weaponizing Nim (https://nim-lang.org/)

PPPwn - PlayStation 4 PPPoE RCE

My proof-of-concept exploits for the Linux kernel

PoCs and exploits for CVEs discovered by NebuSec.

Shellcode Compiler

Meltdown Exploit PoC

Various kernel exploits

Sudo Baron Samedit Exploit

MD5-Monomorphic Shellcode Packer - all payloads have the same MD5 hash

A collection of exploits and documentation that can be used to exploit the Linux Dirty Pipe vulnerability.

poc for CVE-2024-38063 (RCE in tcpip.sys)

Public exploit repository covering local privilege escalation, buffer overflows, and database exploits across Linux, Solaris, AIX, OpenBSD, Zyxel,…