
PEASS-ng
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

Privilege Escalation Project - Windows / Linux / Mac

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

PoC for CVE-2026-3609 - XIGNCODE3 xhunter1.sys handle leak enabling PPL bypass and LSASS dumping

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

POC for CVE-2021-3156 - Heap-based buffer overflow in sudo

CVE-2026-23111

OPPO Find N2 GhostLock (CVE-2026-43499) exploit adaptation

Direct Memory Access (DMA) Attack Software

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

The swiss army knife of LSASS dumping

EDRSandblast-GodFault

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Manual kernel driver mapper for Windows x64 that abuses CVE-2025-8061 in Lenovo's LnvMSRIO.sys to perform a BYOVD attack, mapping PE64 drivers into…

Runtime libc function auditor that detects file access race conditions and symlink vulnerabilities by hooking filesystem syscalls via LD_PRELOAD,…

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

CVE-2026-46215 DRM GEM UAF Exploit for Linux 7.0 - The first working PoC for linux kernel 7 use after free- by Antonius (sw0rdm4n, w1sdom, ev1lut10n)