
CVE-2026-42533
Exploit for nginx heap buffer overflow (CVE-2026-42533) providing pre-auth RCE via two-pass capture clobbering. Includes info leak, heap spray, and…

Exploit for nginx heap buffer overflow (CVE-2026-42533) providing pre-auth RCE via two-pass capture clobbering. Includes info leak, heap spray, and…

Shell-based checker for CVE-2024-1086 vulnerability, enabling rapid detection and verification of this specific exploit in target environments.

Exploit for CVE-2023-21688 combining a side-channel information leak with a use-after-free (UAF) chain for kernel privilege escalation.

Search for Unix binaries that can be exploited to bypass system security restrictions.

Heap overflow exploit for CVE-2021-22555 achieving local privilege escalation to root on Ubuntu 20.04 with kernel 5.8.0-48.

Proof-of-concept exploit for CVE-2025-53136, a Windows NT OS kernel information disclosure vulnerability triggered via a race condition, enabling…

Proof-of-concept exploit for CVE-2017-0785, an Android Bluetooth information disclosure vulnerability, targeting DS-MDP002 devices.

Leaking kernel addresses from ETW consumers. Requires Administrator privileges.

My proof-of-concept exploits for the Linux kernel

Python-based exploit for CVE-2022-44268, an arbitrary file read vulnerability in ImageMagick. Poisons PNG images to read sensitive files from…

Exploit for CVE-2024-12085 information leak in rsync, with hardcoded target module and checksums, plus auxiliary traffic capture and heap testing…

Research tool for CVE-2025-49144, providing vulnerability analysis and exploitation capabilities for security testing and assessment.

Python exploit for CVE-2024-55557 targeting Weasis 4.5.1, enabling local and remote file retrieval from vulnerable systems.

Exploit chain for CVE-2022-38029 combining a side-channel info leak with a KALPC use-after-free to achieve privilege escalation.

Proof-of-concept exploit for Linux kernel FUSE information leak (CVE-2024-44947), demonstrating beyond-EOF memory disclosure via mmap and including…


Windows KASLR bypass using prefetch side-channel

Proof-of-concept exploit for CVE-2024-23208, targeting a specific vulnerability in Apple platforms. Provides a test case for security researchers and…