
cheat-engine-undetectable
Academic Research Edition - T1: User-mode evasion (obfuscation + syscall gateway), T2: BYOVD kernel bridge, T3: DMA hardware (future work).

Academic Research Edition - T1: User-mode evasion (obfuscation + syscall gateway), T2: BYOVD kernel bridge, T3: DMA hardware (future work).

C-based exploit for CVE-2026-31431 in the Linux Kernel Crypto API, targeting aarch64 and amd64 architectures with shellcode generation and ancillary…

This package is not a complete root. It flips SELinux to Permissive and holds reclaim long enough for follow-on work. Host `uid=0` is not achieved…

PoC for CVE-2026-67822 stack overflow in Tenda W6-S /goform/wifiSSIDset: DoS reproducer, QEMU MIPS shim, and conceptual RCE payload skeleton.

RowHammer Based-Exploit

Python exploit for Serv-U SSH vulnerability (CVE-2021-35211) with multiple payload modes: stage, exec, and download-execute, enabling shellcode…

incomplete iOS 10.2 jailbreak for 64 bit devices by qwertyoruiopz and marcograssi

Collection of CVE(work) on tenserflow binary pwning it


This repo contains all the work surrounding the development of the PoC for CVE-2024-48208, and how a simple OOB(Out-of-bound) read can result in jail…

It's only hitting vulnerable path in termdd.sys!!! NOT DOS

Make CVE-2020-0668 exploit work for version < win10 v1903 and version >= win10 v1903

Exploit work Privilege Escalation CVE-2017-1000112


Ian Beer's exploit for CVE-2017-2370 (kernel memory r/w on iOS 10.2)

CVE-2023-32233: Linux内核中的安全漏洞

Microsoft Word 远程代码执行漏洞