
zygote-CVE-2024-31317
This is a toolkit that uses CVE-2024-31317 to extract private app data via ADB or spawn a shell with an app's UID.

This is a toolkit that uses CVE-2024-31317 to extract private app data via ADB or spawn a shell with an app's UID.

Just a PoC tool to extract password using CVE-2019-1653.

Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.

RTF Cleaner, tries to extract URL from malicious RTF samples using CVE-2017-0199 & CVE-2017-8759

This Proof of Concept (PoC) demonstrates an exploit for CVE-2024-42009, leveraging a cross-site scripting (XSS) vulnerability to extract emails from…

Dump LSASS via physical memory read primitives in vulnerable kernel drivers

Exploit for the CVE-2023-23397

on Mac 10.12.2

This project will help to test the Log4j CVE-2021-44228 vulnerability.

Python tarfile data filter bypass via PATH_MAX overflow in os.path.realpath() - CVE-2025-4517 / CVE-2025-4330

Exploit script for WordPress Plugin Mail Masta 1.0 - CVE-2016-10956

Podlove Podcast Publisher Unauthenticated File Upload RCE via is_image() vs extract_file_extension() Mismatch | CVSS 9.8

HackTheBox — Facts (Easy/Linux) | CVE-2025-2304 + AWS S3 + SSH Key + Facter PrivEsc