
CVE-2021-22555-Poc
Heap overflow exploit for CVE-2021-22555 achieving local privilege escalation to root on Ubuntu 20.04 with kernel 5.8.0-48.

Heap overflow exploit for CVE-2021-22555 achieving local privilege escalation to root on Ubuntu 20.04 with kernel 5.8.0-48.

Proof-of-concept exploit for CVE-2017-0785, an Android Bluetooth stack remote code execution vulnerability. Enables testing and verification of the…

Python-based proof-of-concept exploit for CVE-2023-2636, demonstrating a specific vulnerability with code for testing and verification in controlled…

Proof-of-concept exploit for CVE-2018-4415, a memory corruption vulnerability in Apple's macOS, demonstrating exploitation techniques.

Exploit for CVE-2019-6207: kernel heap information leak in getdirentriesattr on macOS <=10.14.4 and iOS <12.2, triggerable from sandbox.

Exploit for CVE-2023-21688 combining a side-channel information leak with a use-after-free (UAF) chain for kernel privilege escalation.

Exploit for CVE-2024-12085 Infoleak

Python-based exploit for CVE-2022-44268, an arbitrary file read vulnerability in ImageMagick. Poisons PNG images to read sensitive files from…

Technical analysis of CVE-2020-1206 (SMBleed) kernel information disclosure vulnerability in Windows SMBv3, including unauthenticated memory leak…

Proof-of-concept exploit for Linux kernel FUSE information leak (CVE-2024-44947), demonstrating beyond-EOF memory disclosure via mmap and including…

Educational proof-of-concept exploit for CVE-2020-0796 (SMBGhost) demonstrating pre-auth RCE on Windows SMBv3. Includes step-by-step lab setup,…

Proof-of-concept exploit for CVE-2017-1000117, demonstrating a remote code execution vulnerability in Git's submodule handling.

Exploit for CVE-2010-3904, a Linux kernel privilege escalation vulnerability. Provides a proof-of-concept implementation for local privilege…

Windows KASLR bypass using prefetch side-channel

CVE-2019-0708 (BlueKeep)

Leaking kernel addresses from ETW consumers. Requires Administrator privileges.

CVE-2018-4248: Out-of-bounds read in libxpc during string serialization.

Build a database of libc offsets to simplify exploitation