
MSRMapper
Manual kernel driver mapper for Windows x64 that abuses CVE-2025-8061 in Lenovo's LnvMSRIO.sys to perform a BYOVD attack, mapping PE64 drivers into…

Manual kernel driver mapper for Windows x64 that abuses CVE-2025-8061 in Lenovo's LnvMSRIO.sys to perform a BYOVD attack, mapping PE64 drivers into…

A proof-of-concept for CVE-2022-48565 - python plistlib XML deserialisation attack

Script to obfuscate a payload the same way as it was done by the XZ utils attack (CVE-2024-3094)

PoC exploit for CVE-2015-2291

CVE-2025-48593

MD5-Monomorphic Shellcode Packer - all payloads have the same MD5 hash

Buffer Overflow Attack and Prevention for an FPGA Based Soft-Processor System - 7th International Conference on Innovation in Electronics and…

Proof-of-concept for CVE-2026-21508, demonstrating a DLL hijacking attack on Windows 11 that escalates privileges by loading a crafted DLL into…

CVE-2017-4878 Samples - http://blog.talosintelligence.com/2018/02/group-123-goes-wild.html

Demonstrates a proof-of-concept exploit for CVE-2021-43297, a deserialization vulnerability in Apache Dubbo's Hessian2 protocol, with provider and…

Demonstrates a local code execution exploit for Foxit PDF Reader via XFA-based PDFs, with step-by-step attack reproduction and extension to related…

Educational PoC for CVE-2026-8838, a critical RCE vulnerability in Amazon Redshift Python Driver via unsafe eval() in vector_in(). Includes technical…

Proof-of-concept exploit for CVE-2026-3888, written in C. Demonstrates vulnerability exploitation and binary-level attack techniques for security…

C exploit for CVE-2025-38248 supporting ROP and data-only attack techniques for binary exploitation research and vulnerability verification.

Exploit for CVE-2025-27591, a local privilege escalation in the Below service, leveraging a world-writable directory and symlink attack to modify…

This study analyzes Python pickle deserialization vulnerabilities, focusing on CVE-2024-3568 in Hugging Face Transformers' TFAutoModel. We reproduce…

Analysis and ethical exploitation guide for CVE-2020-0796 (SMBGhost) SMBv3 vulnerability with technical details and practical attack plan.

Malicious DOCX generator exploiting CVE-2021-40444 (Microsoft Office Word RCE) with CAB-based DLL side-loading and CAB-less RAR/WSF attack chains for…