
CyberStrikeAI
The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

Cross-platform C port of the Copy Fail Linux LPE (CVE-2026-31431). Disclosed 2026-04-29 by Theori / Xint.

Educational standalone JavaScript implementation of the public exploit for CVE-2016-9079 (Firefox Use-After-Free), adapted from the original…

POC for CVE-2025-29384

A number of exploits and tools I've written for CVEs accredited to Marshall Whittaker/oxagast

PoC for CVE-2026-42945 (nginx Rift) — heap buffer overflow in ngx_http_rewrite_module. Includes detect/probe/exploit modes, dual-fixture Docker lab,…

Dirty Frag - kernel Linux critical Vulnerability

Private Nginx Rift ASLR lab, exploit chain, and demo recordings

对 CVE-2026-31431 的复现分析、C 改编的 exp。

Automatic script written in python for CVE-2009-3999

My PoC of Lenovo-CVE-2025-8061

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Practical lab focused on vulnerability analysis and exploit development, using FreeFloat FTP Server 1.0 as an educational buffer overflow case study…

open source port/reimplementation of the Cobalt Strike BOF Loader as is

This tool demonstrates the application of fundamental physics discoveries to cybersecurity.

Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal Palace.