
sc2pe
Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE

Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE

This CVE addresses a vulnerability in sudo versions 1.9.14 to 1.9.17, enabling unauthorized local privilege escalation to root access.

Proof-of-concept for CVE-2026-21508, demonstrating a DLL hijacking attack on Windows 11 that escalates privileges by loading a crafted DLL into…

Proxies sensitive API calls from shellcode to artifacts for CET-compatible clean call stacks, enabling stealthy payload execution and call stack…

CVE-2020-1048 bypass: binary planting PoC

Remote access trojan created using WinRar with firefox installer and python Reverse Shell embedded.

NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection

0ldSQL_MySQL_RCE_exploit.py (ver. 1.0) (CVE-2016-6662) MySQL Remote Root Code Execution / Privesc PoC Exploit For testing purposes only. Do no…

freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package

Pre-auth RCE PoC for WordPress core — chains CVE-2026-63030 (REST /batch/v1 route-confusion desync) with CVE-2026-60137 (author__not_in SQLi) into an…

Async PICO Hub is a work-in-progress framework to extend Cobalt Strike with custom event monitoring and in-process Asynchronous BOFs

CVE-2017-5005 for Quick Heal Antivirus

D-RAT [VB.NET]+[MySQL]+[PHP]

Local privilege escalation exploit for macOS XNU kernel (CVE-2026-43724) that uses an out-of-bounds write in dyld shared-cache slide walk to gain a…

Proof of concept exploit for CVE-2026-3775/CVE-2026-3780 and CVE-2026-57239 which lets you obtain NT AUTHORITY\SYSTEM rights via the Foxit PDF Reader…

A PoC exploit for CVE-2022-41622 - a CSRF in F5 BIG-IP control plane that leads to remote root

Exploit codes for rconfig <= 3.9.4