
r77-rootkit
Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

This is a PoC for bypassing UAC using DLL hijacking and abusing the "Trusted Directories" verification.

Redirects EDR working folders using a Bind Filter (bindflt.sys) to bypass endpoint detection, corrupt EDR services, or replace with…

PowerShell MachineAccountQuota and DNS exploit tools

Linux privilege escalation checks (systemd, dbus, socket fun, etc)

BlueStacks privilege escalation through VM backdooring

Logrotate race condition exploit that enables privilege escalation by writing arbitrary files, such as reverse shell payloads, into system…

exploit

Proof-of-concept exploit for CVE-2025-63946, a local privilege escalation in Tencent PC Manager via symlink attacks on temporary directories,…

Proof-of-concept and technical writeup for CVE-2026-43783, a macOS local privilege escalation via DesktopServicesHelper XPC arbitrary chown to gain…

Demonstrates a local privilege escalation vulnerability in Tencent iOA before 210.9.28693.62001 via symlink attacks on C:\Windows\Temp, enabling…

Wing FTP Server 6.2.3 - Privilege Escalation