
RansomLord
RansomLord is a proof-of-concept Anti-Ransomware exploitation tool that automates the creation of PE files, used to compromise ransomware…

RansomLord is a proof-of-concept Anti-Ransomware exploitation tool that automates the creation of PE files, used to compromise ransomware…

Program for determining types of files for Windows, Linux and MacOS.

This repository provides a learning environment to understand how an Exim RCE exploit for CVE-2018-6789 works.

A proof-of-concept for CVE-2022-48565 - python plistlib XML deserialisation attack

CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done

Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal Palace.

self cleaning CVE-2025-27591 Poc that grants a root reverse shell instead of modifying passwd files

Proof-of-concept exploit for CVE-2018-11235, a remote code execution vulnerability in Git submodules. Demonstrates exploitation of malicious…

Generates crafted TIFF/DNG files to trigger out-of-bounds writes in Samsung's libimagecodec.quram.so, including binary analysis and reproduction…

Proof-of-concept exploit for CVE-2018-12798, a heap overflow in Adobe Acrobat Reader that enables remote code execution via malicious PDF files.

my extended take on Mark Brand's CVE 2016-3861 libutils bug

CVE-2019-1422 exploit targeting Windows privilege escalation via deletion of system temp directory files (teredo.txt, iphttps.txt).

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

Exploit PoC for CVE-2026-31431 that uses AF_ALG and splice() to overwrite Linux page cache and patch /usr/bin/su in memory, escalating unprivileged…

A demo Android project showcasing dynamic DEX loading using DexClassLoader, PathClassLoader, and in-memory execution. For educational purposes only.

Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75

Reproduction of CVE-2023-34312 using two malicious DLL files to exploit QQ and TIM messaging applications for security research and testing.

The project documents the completion and analysis of the Fragnesia (CVE-2026-46300) TryHackME lab, which demonstrates a Linux kernel page -cache…