
DirtyClone
DirtyClone - local privilege escalation (LPE) proof-of-concept targeting a kernel/XFRM-related vulnerability described in the source as CVE-2026-43503

DirtyClone - local privilege escalation (LPE) proof-of-concept targeting a kernel/XFRM-related vulnerability described in the source as CVE-2026-43503

A Proof-of-Concept bootkit inspired by Petya ransomware, written in Assembly, C, and C++

Software sandbox for storage of sensitive information in memory.

Simple Secure Keeper for Secrets

Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens…

RAMnesia Attack: A Scientific Investigation of WireTap Threats to Bitcoin Infrastructure, Hardware Vulnerabilities (CVE-2025-6202, CVE-2023-39910),…

Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and…

CVE-2025-14847 explaination and lab

CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done

Curated CTF writeup collection for GlacierCTF 2023 covering pwn, rev, web, crypto, and smart contract challenges with solutions and educational…

simulation experiment of Curveball (CVE-2020-0601) attacks under ECQV implicit certificates with Windows-like verifiers


CVE-2020-0601: Windows CryptoAPI Vulnerability. (CurveBall/ChainOfFools)

MD5-Monomorphic Shellcode Packer - all payloads have the same MD5 hash

A POC OF CVE-2022-2274 (openssl)

The Heartbleed bug `CVE-2014-0160` is a severe implementation flaw in the OpenSSL library, which enables attackers to steal data from the memory of…

POC exploit of CVE-2021-3345, a vulnerability in libgcrypt version 1.9.0

Lightweight library which allows the ability to map both native and managed assemblies into memory by either using process injection of a process…