
0xM0nCrush
Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust.

Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust.

Proof-of-concept exploit chain (CVE-2026-47301) for Microsoft Configuration Manager (SCCM), combining a broken access, CAB arbitrary-write path…

macOS 10.13.3 (17D47) Safari Wasm Exploit

exploits for CVE-2024-20017

JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfigurations (like not…

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

Proof-of-concept exploit for CVE-2020-0796 (SMBGhost) remote overflow vulnerability. Python script to check and trigger the SMBv3 compression bug on…

A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.

Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86-64, x86,…

Windows local privilege escalation exploit abusing SeManageVolumePrivilege to grant full C:\ drive access and gain a SYSTEM shell via PrintConfig.dll…

it works on xp (all version sp2 sp3)

PoC exploits for CVE-2020-17382

Automated scanner for discovering DLL search order hijacking candidates in Windows executables, featuring import table parsing, runtime module…

High fidelity scanner for CVE-2026-41940 (cPanel & WHM authentication bypass)

openam-CVE-2021-35464 tomcat 执行命令回显

Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)

Chalumeau is automated,extendable and customizable credential dumping tool based on powershell and python.

Signing-key abuse and update exploitation framework