
CVE-2025-55616
Exploit for CVE-2025-55616, a local RCE in Zsh via history expression, achieving arbitrary code execution with user privileges.

Exploit for CVE-2025-55616, a local RCE in Zsh via history expression, achieving arbitrary code execution with user privileges.

Proof-of-concept exploit for CVE-2015-3636, a Linux kernel ping socket vulnerability enabling local privilege escalation.

A collection of proof-of-concept exploit scripts written by the STAR Labs team for various CVEs that they discovered or found by others.

CVE-2026-19193 Proof of Concept

Zapscape (CVE-2026-64561) KVM/x86 shadow MMU UAF guest-to-host escape PoC mirror — V4bel/@v4bel, MIT; for authorized security testing

Alternative Read and Write primitives using Rtl* functions the unintended way.

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

CVE-2026-42533: pre-auth nginx heap overflow and info leak from PCRE capture clobbering in the map/script engine, chained to RCE.

Python script to detect and exploit CVE-2021-44142 in Samba servers, dumping heap cookie and pointer via single SMB connection for vulnerability…

Historical archive of exploit code and tools from TESO, including remote exploits, DDoS agents, and development utilities for educational security…

IKEv2, ikeext.dll, CVE-2026-33824, double free, heap grooming, ROP, SKF fragmentation, Windows exploit, anti-debug, obfuscation, API hooking,…


Reliable remote code execution exploit for CVE-2026-25243 targeting jemalloc Redis. Executes arbitrary commands via a single crafted RESTORE command…

Patch Binaries via MITM: BackdoorFactory + mitmProxy.

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

FortiGate SSL-VPN CVE-2023-27997 Exploit PoC Script with ROP Chain

LlamaStack-RCE: Deterministic Supply Chain Exploitation & Hardening Framework [CVE-2024-50050] Focus on AI Security Research…