
CVE-2021-3156-Project
Educational lab environment for CVE-2021-3156 (Baron Samedit) with a Dockerized vulnerable sudo target, exploit scaffold, canary test, root-cause…

Educational lab environment for CVE-2021-3156 (Baron Samedit) with a Dockerized vulnerable sudo target, exploit scaffold, canary test, root-cause…

Palo Alto - CVE-2026-0300 exploit

Linux kernel UAF analysis for CVE-2026-64560 with race-triggering PoC, patch review, affected LTS/Android version matrix, and self-check for patched…

Security Advisory: Out-of-Bounds Read in facil.io MIME Parser leads to Server crash

CVE Reproduction: cve-2024-38077-madlicense_reproduction

Proof-of-concept for CVE-2026-43284 — 4-byte XFRM/ESP page-cache write primitive to patch a setuid binary (x86_64, user namespaces). Includes kernel…

CVE-2021-3156 (Baron Samedit) Report and Research

CVE-2023-4911 (Looney Tunables) analysis report and Docker reproduction lab

CVE-2026-41089 是 Windows Netlogon 服务中一个关键的远程代码执行漏洞,单包即可崩溃 lsass.exe,导致域控制器在约 30-60 秒内重启。此期间该 DC 的所有域认证将失败。

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

Arbitrary file read exploit for the Windows UPnP Device Host service.

Technical advisory and proof-of-concept for a stack-based buffer overflow (CWE-121) in the NXP moal.ko Wi-Fi kernel driver, enabling local kernel…

Proof-of-concept exploit for a stack-based buffer overflow in GMT's gmt_remote_dataset_id, demonstrating crash and potential code execution via…

CVE-2025-31337 Security Advisory - Critical Buffer Overflow in AI Chatbot Framework

Local privilege escalation exploit for CVE-2025-62676.

Exploit research targeting Windows DWM to achieve local privilege escalation via a theoretical Visual-Field Singularity, bypassing graphics isolation…

Proof-of-concept for CVE-2024-37726: local privilege escalation in MSI Center via arbitrary file overwrite using symlink/junction attacks and OpLock…

Proof-of-concept for CVE-2025-47962 demonstrating local privilege escalation via DLL hijacking in Windows IpOverUsbSvc service due to insecure…