
ghostlock-cve-2026-43499
CVE-2026-43499 (GhostLock) — Linux kernel futex PI rt_mutex UAF ARM32 privilege escalation research targeting Huawei Watch 4 Pro (kernel 5.4.210)

CVE-2026-43499 (GhostLock) — Linux kernel futex PI rt_mutex UAF ARM32 privilege escalation research targeting Huawei Watch 4 Pro (kernel 5.4.210)

POC for CVE-2025-24132 (AirBourne). Currently just triggers the overflow and causes a crash

CVE-2021-3625 - Sample exploits for Zephyr

Exploit code for CVE-2021-37748 targeting Grandstream HT801 ATA, demonstrating remote code execution via crafted HTTP requests.

POC to test the BootROM vulnerability found in LPC55S69 and K82 Series

Explotation framework for CVE-2019-11687

Demonstrates CVE-2022-34302, a Secure Boot bypass via the New Horizon Datasys signed bootloader whose built-in custom PE/COFF loader executes…

Interactive PoC suite for CVE-2014-9222 (Misfortune Cookie) and related router exploits, featuring detection, auth bypass, DoS, and RCE modules with…

Exploit used against the Netgear R6700v3 during Pwn2Own Austin 2021

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

A proof of concept of CVE-2020-15808 vulnerability exploit on STM32F4 Discovery board

Unauthenticated RCE exploit for Fantec MWiD25-DS

Exploit for TP-Link AX10/AX1500 stack buffer overflow in CWMP (TR-069) enabling remote code execution via ret2libc with ASLR bypass. Includes…

Exploit for CVE-2020-8597 targeting RM2100 routers, providing proof-of-concept code for remote code execution via buffer overflow in the router's web…

Exploits for Tenda Ac8v4 stack-based overflow to Remote-Code Execution via Mipsel Ropping (CVE-2023-33669 - CVE-2023-33675)

A demo server for CVE-2016-3955 (UBOAT)

Rust implementation of the Fusée Gelée exploit (CVE-2018-6242) for Tegra processors.

Original research and PoC for a pre-auth Base64-decoded password stack buffer overflow in Netis NC63 login.cgi