
HotLoad-Driver
C++
exploitationpayload-developmentpersistence-mechanisms+3
8810 years ago

C++

Educational Linux kernel rootkit PoC exploring DKOM, syscall hooking, stealth, observability and defensive detection

Repository hosting a hypothetical EDR Spoofer, as discovered originally by Nightmare-Eclipse

WORK IN PROGRESS. RAT written in C++ using Win32 API

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

Proof-of-concept exploit for CVE-2026-65400 enabling authenticated file read/write, reverse shells, and persistence on macOS via Apple ScreenSharing.

A slightly more fun way to disable windows defender + firewall. (through the WSC api)