
files
Curated repository of exploits, proof-of-concept code, and vulnerability research presentations from the phoenhex team, focused on binary…

Curated repository of exploits, proof-of-concept code, and vulnerability research presentations from the phoenhex team, focused on binary…

Program for determining types of files for Windows, Linux and MacOS.

Display information about files in different file formats and find gadgets to build rop chains for different architectures (x86/x86_64, ARM/ARM64,…

CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done

exploits and proof-of-concept vulnerability demonstration files from the team at Hacker House

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

RansomLord is a proof-of-concept Anti-Ransomware exploitation tool that automates the creation of PE files, used to compromise ransomware…

Proof-of-concept exploit for CVE-2023-21608, a Use-After-Free vulnerability in Adobe Acrobat Reader enabling remote code execution via crafted PDF…

Files + Writeups for DownUnderCTF 2022 Challenges

Logrotate race condition exploit that enables privilege escalation by writing arbitrary files, such as reverse shell payloads, into system…

Exploit for CVE-2026-31431, a Linux kernel AF_ALG AEAD page-cache write vulnerability enabling unprivileged arbitrary 4-byte writes to readable files…

Local privilege escalation exploit for Linux kernel vulnerability CVE-2022-0847 (Dirty Pipe), allowing non-privileged users to overwrite data in…

Proof-of-concept exploit for CVE-2020-0728 demonstrating local privilege escalation via Windows TrustedInstaller COM service abuse to bypass file…

Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal Palace.

Reflective PE loader written in Zig. Loads and executes native and .NET PE files directly from memory.

Files related to the Pwn2Own Toronto 2023 exploit against the Xiaomi 13 Pro.

Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75

Proof-of-concept demonstrating a Windows Cloud Files access-check bypass (CVE-2026-83991) that converts a read-only file into a cloud placeholder via…