
php-bypass-disable-functions
Demo project how to bypass the disable_functions security control of PHP on Linux

Demo project how to bypass the disable_functions security control of PHP on Linux

CVE-2020-15368, aka "How to exploit a vulnerable driver"

An demonstration of how to exploit double-fetch vulnerability CVE-2016-6516

There are 2 exploitation methods that exploit CVE-2022-27666. For more info on how to use these code bases please check my blog.

POC shows how to leak postgresql stuff cause hugefile sub-system. Based on https://x.com/spendergrsec/status/1993794163880718700?s=20

analysis of the sudo buffer overflow affect sudo version <1.8.26 and how to use GCC to compile publicly availible exploits

Using CVE-2022-0847, "Dirty Pipe Exploit", to pop a reverse bash shell for arbitrary code execution on a foreign machine.

Exploit for CVE-2024-5274, a Chrome V8 DCHECK bytecode mismatch vulnerability that provides out-of-bounds read/write primitives for browser…

Implementation of Max Kellermann's exploit for CVE-2022-0847

My n-day exploit for CVE-2019-18634 (local privilege escalation)

Collection of CVE(work) on tenserflow binary pwning it

OpenBSD remote overflow

A curated list of awesome OSCP resources

Deliberately vulnerable client-server application for learning penetration testing of non-HTTP thick clients. Includes challenges for SQL injection,…

original cve-2013-2094 exploit and a rewritten version for educational purposes

Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…

Adaptation of CVE-2023-6241 for Google Pixel 7 from Google Pixel 8 taken from securitylab/SecurityExploits/Android/Mali/CVE_2023_6241
