
CVE-2011-1249
Local privilege escalation exploit for Microsoft Windows (x86) targeting afd.sys driver vulnerability (MS11-046). Compiles with MinGW-w64 for shell…

Local privilege escalation exploit for Microsoft Windows (x86) targeting afd.sys driver vulnerability (MS11-046). Compiles with MinGW-w64 for shell…

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

Proof-of-concept for CVE-2026-62958: crafts a malformed ELF to trigger an out-of-bounds read in Libriscv and crash the sandbox with SIGSEGV.

collect for learning cases

A proper well structured documentation for getting started with chrome pwning & v8 pwning

Universal local privilege escalation exploit for CVE-2024-1086 targeting Linux kernels v5.14 to v6.6. Provides root shell with 99.4% success rate on…

Collection of CVE(work) on tenserflow binary pwning it

Pre-compiled exploit for CVE-2026-43284 (Dirty Frag) with multi-architecture support (x86_64, i386, aarch64, armv7, riscv64, ppc64le, s390x).…

reversing mtk-su

C++ exploit for CVE-2022-24481 targeting Windows 10/11 local privilege escalation via kernel vulnerability. Compiled with Visual Studio 2022 and…

CWE-781: Improper Address Validation in IOCTL with METHOD_NEITHER I/O Control Code

Educational analysis and proof-of-concept code for CVE-2021-4034 (pkexec local privilege escalation), with detailed comments explaining the…

Local privilege escalation exploit targeting CVE-2026-43499 for the Xiaomi 17T Pro (warhol) on Android 16 with MediaTek MT6993 SoC.

C exploit collection for Linux Dirty Pipe (CVE-2022-0847) local privilege escalation, including read-only file overwrite and SUID binary hijacking,…

Master's thesis research on CVE-2021-4034 (PwnKit) local privilege escalation. Multi-payload Python exploit with 7 modes including interactive shell,…

Proof-of-concept exploit for CVE-2024-22002, demonstrating local privilege escalation via DLL hijacking in CORSAIR iCUE's update service to run code…

Linux kernel TLS zero-length record handling exploit for CVE-2025-39682, targeting kernelCTF mitigation instances with a 79% success rate.