
hp-slate7-root-kit
HP Slate 7 2800 Android 4.1.1 rooting kit using CVE-2015-1805.

HP Slate 7 2800 Android 4.1.1 rooting kit using CVE-2015-1805.

Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator

VAPT report for vsFTPd 2.3.4 backdoor CVE-2011-2523, covering Nmap vulnerability scanning, Metasploit exploitation, post-exploitation root access,…

Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code…


Autoelevate DLL search-order hijacking UAC bypass for x64 Windows 7–11, abusing 32-bit iscsicpl.exe via SysWOW64 to execute code without a UAC prompt.

Windwos Zero Day Local PrivESc Exploit (CVE-2026-41091)

🛡️ CVE-2026-64638 - WordPress Security Assessment Suite (CVSS 8.9) | WordPress 4.7.0-7.0.2 pentest toolkit. Includes vulnerability assessment &…

CompMgmtLauncher & Sharepoint DLL Search Order hijacking UAC/persist via OneDrive

Exploitation of echo_driver.sys

EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.

WordPress Core Pre-Auth RCE — Batch Route Confusion + SQL Injection

Script Bash -- CVE-2021-3560

CVE-2026-60004 — Gitea <= 1.27.0 Pre-Auth RCE

Windows绕过EDR实现DumpHash

cPanel/WHM Authentication Bypass (Zero-Day Vulnerability)

Marimo exploit prior to 0.23.0. Pre-Auth RCE vulnerability via websocket endpoint : /terminal/ws.