
CVE-2023-4427
Exploit for CVE-2023-4427 targeting Chrome 117 V8, using many cross-origin iframes to brute-force ASLR and achieve code execution. Provides…

Exploit for CVE-2023-4427 targeting Chrome 117 V8, using many cross-origin iframes to brute-force ASLR and achieve code execution. Provides…

Full-chain Chrome exploit targeting CVE-2019-5782 and CVE-2019-13768 with custom ROP gadgets and shellcode for arbitrary command execution on Windows…

Chrome 152 V8 exploit chaining CVE-2026-85046 and CVE-2026-87491 to corrupt the heap, forge Wasm metadata, and execute native code from the renderer.

Chrome V8 exploit for CVE-2019-5825 targeting version 73.0.3683.86 with --no-sandbox. Includes proof-of-concept code and integration with Metasploit…

Google Chrome Updater DosDevices Local Privilege Escalation Vulnerability

This project is a research-oriented and educational simulation designed to demonstrate the concept of a sandbox escape vulnerability within Google…

# CVE-2026-11645 - Chrome V8 Out-of-Bounds Read/Write Exploit

Proof-of-concept exploit for CVE-2026-85046 in Chrome 152.0.7977.75, demonstrating type confusion in sort() to achieve arbitrary code execution via a…

Proof-of-concept exploit for CVE-2021-38001, a Chrome V8 JavaScript engine vulnerability, demonstrating remote code execution via crafted .mjs files.

Proof-of-concept exploit for CVE-2021-21220, a Chrome V8 vulnerability, with references to technical analysis and exploitation details.

Technical writeups and proof-of-concept exploits for discovered CVEs in Linux kernel and Chrome V8, including detailed vulnerability analysis and…

Todos los materiales necesarios para la PoC en Chrome y ftview

Exploit for Chrome V8 CVE-2018-6065, a type confusion vulnerability, with build instructions and analysis blog post for educational research.

Interactive browser-based lab simulating Chrome memory corruption vulnerabilities (CVE-2025-14765/14766) for safe security training, featuring…

Exploit for CVE-2026-11645, a V8 out-of-bounds read/write in Google Chrome allowing remote code execution via crafted HTML pages.

Full-chain RCE exploit for CVE-2025-2783, a Chromium Ipcz sandbox escape vulnerability. Implements thread hijacking, V8 hooks, and shellcode…

PoC for a Chrome SKSL bypass + integer overflow -> OOB write vulnerability I reported to Google in Skia.

PoC for a Chrome integer overflow -> OOB write vulnerability I reported to Google in Skia.