
CVE-2021-3156
Exploit for CVE-2021-3156 (Baron Samedit), a heap-based buffer overflow in sudo, enabling local privilege escalation. Includes target list and…

Exploit for CVE-2021-3156 (Baron Samedit), a heap-based buffer overflow in sudo, enabling local privilege escalation. Includes target list and…

A collection of exploits and documentation that can be used to exploit the Linux Dirty Pipe vulnerability.

Deobfuscation via optimization with usage of LLVM IR and parsing assembly.

Simulates the Windows PE loader to identify DLL hijacking vulnerabilities, generates weaponized DLLs with shellcode payloads, and detects UAC…

Collection of Windows 11 exploit proof-of-concepts and vulnerability demonstrations for security research and penetration testing.

Proof-of-concept exploit for CVE-2023-36874, a Windows elevation of privilege vulnerability. Demonstrates exploitation on vulnerable Windows clients…

Local privilege escalation exploit for CVE-2022-34918 targeting Linux kernel 5.15.0-39-generic via netfilter vulnerability. Includes a…

Exploit for CVE-2017-1000367: local privilege escalation via sudo's SELinux role bypass on selinux-enabled systems. Requires sudo permissions and…

Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.

Exploit for CVE-2018-8120, a Windows local privilege escalation vulnerability, providing a working proof-of-concept for security testing and research.

Windows kernel exploit for CVE-2018-8639 targeting Windows 2008 and 2008 R2 systems with privilege escalation capabilities.

Highly advanced Linux anti-exploitation and anti-tamper binary protector for ELF.

C-based proof-of-concept exploit for VirtualBox CVE-2018-2844, demonstrating a heap overflow vulnerability in the hypervisor's network driver for…

Proof-of-concept exploit for CVE-2024-21345, demonstrating a specific vulnerability with functional code for security testing and validation.

WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.

Rust-based Windows PE manual loader that maps and executes x86/x64 executables from memory, demonstrating internal loader behavior and PE structure…

PoC and analysis for CVE-2022-26809, a Windows RPC runtime integer overflow vulnerability. Includes trigger scripts using PetitPotam-style UNC path…

Proof-of-concept exploit for CVE-2024-26218, demonstrating a specific vulnerability for security research and testing.