
LocalStranger
PoC for WinNotify, demonstrated through a driver mapper, and local privilege escalation.

PoC for WinNotify, demonstrated through a driver mapper, and local privilege escalation.

Forth-based compiler deployed as position-independent x86_64 shellcode, providing a remote code execution agent with interactive REPL over TCP, HTTP,…

Rust PoC for a Linux kernel local privilege escalation vulnerability, exploiting the Crypto API and splice to overwrite page cache and modify…

Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Exploits project Hacking Command Center

exploitdb // The official Exploit-Database repository

Professional extension of sqlmap project

Metasploit RCE on HFS 2.3 - CVE-2014-62

Full-lifecycle penetration test of a legacy Linux environment (Metasploitable 2) emulated on Apple Silicon. Demonstrating network reconnaissance, RCE…

A demonstration of read write using cve-2025-43529 and userland PAC bypass on iOS 26.1

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

Controlled penetration testing lab demonstrating CVE-2011-2523 exploitation and mitigation techniques.

Log4Shell (Cve-2021-44228) Proof Of Concept

Slightly improved exploit of the CVE-2025-24203 iOS vulnerability by Ian Beer of Google Project Zero

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

IDS/IPS lab for detecting and preventing Apache ActiveMQ RCE (CVE-2023-46604) using GVM, Nmap, Snort, iptables, and UFW.

CVE-2019-0708-Msf-验证