
awesome-oscp
A curated list of awesome OSCP resources

A curated list of awesome OSCP resources

itunesstored & bookassetd sbx escape

Deliberately vulnerable client-server application for learning penetration testing of non-HTTP thick clients. Includes challenges for SQL injection,…

original cve-2013-2094 exploit and a rewritten version for educational purposes

Exploit for CVE-2024-5274, a Chrome V8 DCHECK bytecode mismatch vulnerability that provides out-of-bounds read/write primitives for browser…

Summary of Cyber Security interview questions I have been through, hope this helps

Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…

Investigating the bug behind CVE-2021-26708

Demonstration of Abusing the Vulnerable driver AmdTools64.sys for Physical R/W.

Adaptation of CVE-2023-6241 for Google Pixel 7 from Google Pixel 8 taken from securitylab/SecurityExploits/Android/Mali/CVE_2023_6241

Implementation of Max Kellermann's exploit for CVE-2022-0847

Example payload for CVE-2022-21894

CVE-2026-25243 — Redis RESTORE zipmap double-free → remote code execution (ASLR on).

My n-day exploit for CVE-2019-18634 (local privilege escalation)

Technical write-up and exploit code for CVE-2019-11932, a double-free vulnerability in WhatsApp for Android that leads to remote code execution via a…

C-based payload for CVE-2022-21894 that maps a second stage payload to call EFI services, extending the original PoC for Secure Boot bypass…

Local Windows kernel privilege escalation exploit for CVE-2018-8611 (KTM UAF) using write-what-where and increment primitives.
