
EaST
Exploits and Security Tools Framework 2.0.1

Exploits and Security Tools Framework 2.0.1

A high-performance Python toolkit to automate the CVE-2025-4517 PATH_MAX bypass exploit. Specifically tuned for the WingData HTB challenge to achieve…


Reproduction and analysis toolkit for CVE-2025-55423, providing exploit verification and vulnerability assessment capabilities for security…

Linux kernel local privilege escalation exploit with automated prerequisite audit for CVE-2026-46300, validating patch status, XFRM ESP-in-TCP…

Proof-of-concept exploit for CVE-2021-4034 (PwnKit), a local privilege escalation vulnerability in Polkit's pkexec utility affecting most Linux…

Proof-of-concept and static analysis toolkit for finding speculative race condition (SCUAF) gadgets in Linux kernel. Includes 1200+ gadget dataset.

Exploit and firmware analysis toolkit for Canon MF644 printer vulnerabilities, including Python exploits, ARM shellcode, and IDA Pro loader scripts…

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Seagate Toolkit for Windows (Installer <2.35.0.6) is vulnerable to insecure DLL loading. The installer loads DLLs from the working directory without…

A curated list of resources (books, tutorials, courses, tools and vulnerable applications) for learning about Exploit Development

Techniques and tools for Windows kernel exploitation, covering pool overflow exploitation, segment heap metadata abuse, and debugging scripts for…

Historical archive of exploit code and tools from TESO, including remote exploits, DDoS agents, and development utilities for educational security…

A number of exploits and tools I've written for CVEs accredited to Marshall Whittaker/oxagast

CVE-2026-5281 (Chrome Dawn WebGPU UAF) analysis, lab validation tools, and reproducible environment for vulnerable vs patched builds.

UNIX-like reverse engineering framework and command-line toolset

Simplifies D-Link DCS-932L firmware emulation with pre-patched components and includes a Proof-of-Concept exploit for CVE-2024-37606."

Labtainers: A Docker-based cyber lab framework