
DumpBrowserSecrets
Extracts and decrypts browser-stored credentials, cookies, tokens, and history from Chromium and Gecko browsers using DLL injection, APC injection,…

Extracts and decrypts browser-stored credentials, cookies, tokens, and history from Chromium and Gecko browsers using DLL injection, APC injection,…

Hands-on DEFCON workshop materials for killing and silencing EDR agents: lab setup, BYOVD, custom C/C++ evasion tooling, and reverse engineering.

Sudo Local Privilege Escalation CVE-2025-32463 (Best For Cases Where the shell is not stable to spawn a new root shell)

Built a custom Virtual Machine, running Ubuntu 18.04.1 and Webmin 1.810. Using CVE-2019-15107 to exploit a backdoor in the Linux machine

Dockerized lab environment for safely practicing CVE-2021-44228 (Log4Shell) exploitation. Includes attacker LDAP server and vulnerable Java…

Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

Custom Metasploit module exploiting Kubernetes secret mount policy bypass (CVE-2023-2728, CVE-2024-3177) to retrieve secrets via crafted pods.

Snort 3 IDS → IPS lab on Kali. Custom detection rules + iptables enforcement against ICMP recon, Nmap SYN scans, Hydra FTP brute force, and vsftpd…

Proof-of-concept exploit for CVE-2025-27591, a local privilege escalation vulnerability in the Below Linux observability tool. Includes a shell…

Manual and automated exploitation walkthrough for vsftpd 2.3.4 backdoor (CVE-2011-2523) with custom reverse shell payload and Metasploit integration…

Educational lab demonstrating EFS bypass (CVE-2021-43217) on Windows 10 using Kali Linux, Metasploit, and custom Python shellcode for penetration…

Step-by-step black-box penetration test walkthrough exploiting Shellshock RCE (CVE-2014-6271) via Apache mod_cgi, chained with sudo misconfiguration…

Educational reproduction of Apache Log4j CVE-2021-44228 RCE vulnerability with JNDI injection, LDAP server setup, and custom payload generation for…