
Copy-Fail---CVE-2026-31431
CVE-2026-31431 "Copy Fail" - Analysis and defensive research for the Linux kernel AF_ALG privilege escalation vulnerability affecting all major…

CVE-2026-31431 "Copy Fail" - Analysis and defensive research for the Linux kernel AF_ALG privilege escalation vulnerability affecting all major…

Exploit for CVE-2015-8522 targeting Tivoli FastBack Server with stack-based buffer overflow, ASLR/DEP bypass, and automated reverse-shell…

An Open-Source Pre and Post Callback-Based Framework for macOS Kernel Monitoring.


THorse is a RAT (Remote Administrator Trojan) Generator for Windows/Linux systems written in Python 3.

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.

Proof-of-concept exploit for CVE-2023-29336, a Win32k elevation of privilege vulnerability enabling SYSTEM-level access on affected Windows systems.

BOF combination of KillDefender and Backstab

Proof-of-concept exploit for CVE-2021-4034 (PwnKit) demonstrating local privilege escalation in Polkit's pkexec, including patching instructions.

PoC for PwnKit: Local Privilege Escalation Vulnerability in polkit’s pkexec (CVE-2021-4034)

一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-44228) defense.

The Correlated CVE Vulnerability And Threat Intelligence Database API

Modular framework for Windows UAC bypass attacks and mitigation, featuring DLL hijacking, fileless execution, and real-time monitoring to detect and…

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…
