
WinRAR-CVE-2025-8088-Exploitation-Toolkit
GUI tool for creating malicious RAR archives exploiting CVE-2025-8088 path traversal. Uses NTFS ADS stealth and RAR5 header injection for payload…

GUI tool for creating malicious RAR archives exploiting CVE-2025-8088 path traversal. Uses NTFS ADS stealth and RAR5 header injection for payload…

Educational PoC for Dirty COW (CVE-2016-5195) with logging, ptrace fallback, and binary payload support.

Detailed disclosure of CVE-2024-34831: Stored XSS in GibbonEdu Core v26.0.00 leading to privilege escalation via crafted imageLink parameter and…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Exploit I discovered in October of 2022 with androids Package manager binary (pm) and the way it handled debugging flags, patched out by march 2023.…

Generate Payloads and Control Remote Machines. [Discontinued]

⚡ Create infinite UAC prompts forcing a user to run as admin ⚡

WordPress Pie Register ≤ 3.7.1.4 - Admin Privilege Escalation (Unauthenticated)

SOC investigation of CVE-2024-49138 exploitation alert involving PowerShell, EDRFreeze execution, and defense evasion behavior in a simulated…

ghostlock + tcp-zerocopy hybrid CVE-2026-43499 adaptation for samsung kernel

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Tools and Techniques for Red Team / Penetration Testing