
qu1ckr00t
A PoC application demonstrating the power of an Android kernel arbitrary R/W.

A PoC application demonstrating the power of an Android kernel arbitrary R/W.

Collection of proof-of-concept exploits and technical analyses for high-impact CVEs, covering browser memory corruption, TCP/IP RCE, and web…

Chrome v8 1Day Exploit by István Kurucsai

Windows NT ioctl bruteforcer and modular fuzzer

I'll submit the poc after blackhat

Deliberately vulnerable client-server application for learning penetration testing of non-HTTP thick clients. Includes challenges for SQL injection,…

clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerability…

Some V8 n-day exploits that I've written

Exploit for CVE-2022-4262, a Chromium browser vulnerability. Includes references to official bug report, in-the-wild exploit analysis, and root cause…

CVE-2021-3493 Ubuntu OverlayFS Local Privesc (Interactive Bash Shell & Execute Command Entered)

Insecure Java Deserialization Lab


for 供養

CVE-2025-56708&CVE-2025-56709漏洞详解

This is a suite of tools/PoCs/exploits for cameras using the iCSee application. And yes - it can run NES games!

Proof of Concept (PoC) for a stack-based buffer overflow in Steghide 0.5.1. Demonstrates how long file paths trigger a crash (DoS) and leak sensitive…

Simple poc of CVE-2018-8353 Microsoft Scripting Engine Use After Free

OS Command Injection Vulnerability via Cache Clearing Scheduler in Reolink Desktop Application