
CVE-2025-8723
Cloudflare Image Resizing <= 1.5.6 | Unauthenticated Remote Code Execution

Cloudflare Image Resizing <= 1.5.6 | Unauthenticated Remote Code Execution

A sophisticated, wizard-driven Python exploit tool targeting CVE-2025-53770, a critical (CVSS 9.8) unauthenticated remote code execution (RCE)…

Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.


Security research on Erlang/OTP SSH CVE-2025-32433.

A drone engineered to autonomously seek out, hack, and wirelessly take full control over any other Parrot or 3DR drones within wireless or flying…

Dominate the domain. Relay to royalty.

Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths

Spoof SSDP replies and create fake UPnP devices to phish for credentials and NetNTLM challenge/response.

IDPS & SandBox & AntiVirus STEALTH KILLER. MorphAES is the world's first polymorphic shellcode engine, with metamorphic properties and capability to…

SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using…

Reuse open handles to dynamically dump LSASS.

Lifetime AMSI bypass by @ZeroMemoryEx ported to .NET Framework 4.8

A proof of concept for abusing exception handlers to hook and bypass user mode EDR hooks.

Userland exec PoC to be used as attack vector technique

PoC for generating bthprops.cpl module designed to be loaded by Fsquirt.exe LOLBin

BYOVD: Use 360 WFP driver to block EDR/XDR network connection.