
dismember
:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

HackTheBox — Facts (Easy/Linux) | CVE-2025-2304 + AWS S3 + SSH Key + Facter PrivEsc

A curated list of awesome Hacking tutorials, tools and resources

Free hands-on digital forensics labs for students and faculty

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

Exploit for CVE-2022-29582 targeting Google's Kernel CTF

Exploit for CVE-2023-4427 targeting Chrome 117 V8, using many cross-origin iframes to brute-force ASLR and achieve code execution. Provides…

Proof-of-concept exploit for CVE-2026-4480, an unauthenticated remote command execution in Samba's print subsystem via %J injection. Includes reverse…

Automated local privilege escalation exploit for CVE-2015-1328 targeting Ubuntu overlayfs, designed for CTF environments with a simple bash…

CVE-2004-2687 (Distcc 3.2.1) exploitation, methodology & remediation — Metasploitable2 lab

CVE-2026-42945 nginx 32-bit exploit lab ASLR enabled

Exploiting CVE-2022-0847 - written by : Antonius (w1sdom)

HackTheBox DevArea walkthrough chaining CVE-2022-46364 Apache CXF SSRF, CVE-2025-54123 Hoverfly RCE, and SUID bash hijacking for root escalation.

Cybersecurity writeups, walkthroughs, and technical notes by Nanashi Bx2.

Automates CVE-2026-42945 exploitation in NGINX containers: verifies vulnerable targets, brute-forces heap offsets, executes commands, and opens an…