
CVE-2022-37017
Bypass for Symantec Endpoint Protection's Client User Interface Password

Bypass for Symantec Endpoint Protection's Client User Interface Password
Proof of concept for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely.

Exploit for CVE-2019-9810 Firefox on Windows 64-bit.

Patching ROP-encoded shellcodes into PEs

Stealthier variation of Module Stomping and Module Overloading injection techniques that reduces memory IoCs. Implemented in Python ctypes

SonicWall SMA-100 Unauth RCE Exploit (CVE-2021-20038)

CVE-2018-6546-Exploit

We found a way to DLL sideload with cleanmgr.exe

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security…

Reflective PE packer.

out-of-bounds write in Fortinet FortiOS CVE-2024-21762 vulnerability

A simple PoC to invoke an encrypted shellcode by using an hidden call

Use CVE-2026-46333 and CVE-2026-31431 to change any user's password.

CVE-2025-56708&CVE-2025-56709漏洞详解

CVE-2024-27130是影响QNAP网络附加存储(NAS)设备的一个严重漏洞。该漏洞源于QTS操作系统中share.cgi脚本的No_Support_ACL函数中不安全地使用strcpy函数,导致堆栈缓冲区溢出。攻击者可以利用此漏洞,通过精心构造的请求在目标系统上执行任意代码,进而完全控制受影…

EaseUS MobiMover 6.0.5 Build 21620 - Insecure Files and Folders Permissions

CVE-2003-0264 SLMail5.5_RemoteBufferOverflow

clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerability…