
awesome-oscp
A curated list of awesome OSCP resources

A curated list of awesome OSCP resources

Kernel mode WinDbg extension and PoCs for token privilege investigation.

BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055, CVE-2026-3609,…

Identify privilege escalation paths within and across different clouds

New generation of wmiexec.py

Windows protocol library, including SMB and RPC implementations, among others.

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

a guard that blocks catastrophic agent actions

itunesstored & bookassetd sbx escape

A modular framework for benchmarking LLMs and agentic strategies on security challenges across HackTheBox, TryHackMe, PortSwigger Labs, Cybench,…

Offensive tool for exploiting management applications (SolarWinds Orion, McAfee ePO) via non-technical vulnerabilities. Enables client enumeration,…

original cve-2013-2094 exploit and a rewritten version for educational purposes

POC for CVE-2021-41091

Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…

Implementation of Max Kellermann's exploit for CVE-2022-0847

Proof-of-concept demonstrating container escape on Amazon EKS by exploiting Dirty Frag (CVE-2026-43284) kernel page-cache corruption via shared image…

From UART to Root: Breaking Into the Xiaomi C200 via U-Boot

My n-day exploit for CVE-2019-18634 (local privilege escalation)