
CVE-2025-21333-POC
POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY

POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY

Local privilege escalation exploit for CVE-2023-36802 targeting Windows kernel streaming service (MSKSSRV) on Windows 11 22H2, using I/O Ring…

Public proof-of-concept for CVE-2021-31727 and CVE-2021-31728 demonstrating unrestricted disk read/write and arbitrary ring 0 code execution in…

Proof-of-concept exploit for CVE-2022-23222, a Linux kernel local privilege escalation via eBPF. Demonstrates ring buffer manipulation and map…

Proof-of-concept exploit for CVE-2026-42945, a heap buffer overflow in NGINX's rewrite module enabling unauthenticated remote code execution via…

Crash PoC for CVE-2015-3636, a Linux kernel ping socket vulnerability, demonstrating a denial-of-service condition.

Proof-of-concept exploit for CVE-2025-21333, a heap-based buffer overflow in Hyper-V's vkrnlintvsp.sys leading to local privilege escalation via I/O…

Academic research repository analyzing CVE-2025-47812, a critical RCE vulnerability in Wing FTP Server via Lua injection, including static/dynamic…

Proof-of-concept exploit for CVE-2023-21768, a Windows Ancillary Function Driver (AFD.sys) arbitrary kernel write vulnerability enabling local…

Full CVE-2026-42945 research repository with heap buffer overflow analysis, RCE exploit (heap spray + Feng Shui), detection scripts, and patching…

Proof-of-concept exploit for CVE-2015-3636, a Linux kernel ping socket vulnerability enabling local privilege escalation.

Proof-of-concept exploit for a buffer overflow vulnerability in Tenda routers. Sends crafted unauthenticated POST requests to trigger a crash and…

Curated collection of offensive security conference slide decks covering kernel and mobile exploitation, VM/container escapes, and…

A demonstration of how page tables can be used to run arbitrary code in ring-0 and lead to a privesc. Uses CVE-2016-7255 as an example.

Demo-ing CVE-2017-1000253 in a container

BYOVD proof-of-concept abusing the WHQL-signed DsArk64.sys driver for ring-0 process termination and kernel read/write via encrypted IOCTLs and…

Educational PoC for CVE-2026-8838, a critical RCE vulnerability in Amazon Redshift Python Driver via unsafe eval() in vector_in(). Includes technical…