
printnightmare-detection-lab
Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

Educational deconstruction of CVE-2026-31431 privilege escalation exploit, providing readable Python and C implementations with custom shellcode…

Proof-of-concept and advisory for an unauthenticated privilege escalation in a WooCommerce custom registration plugin, including root cause analysis,…

CVE-2011-1249 (MS11-046) AFD privilege escalation — MinGW cross-compilation fix + custom command support

Advanced Custom Fields: Extended <= 0.9.2.5 - Unauthenticated Privilege Escalation via Validation Bypass to '_acf_post_id' Parameter

Proof-of-concept demonstrating DLL sideloading via cleanmgr.exe for Windows privilege escalation, with a custom payload DLL and research into…

Proof-of-concept exploit for CVE-2025-27591, a local privilege escalation vulnerability in the Below Linux observability tool. Includes a shell…

PowerShell exploit for CVE-2021-1675 (PrintNightmare) performing local privilege escalation via Print Spooler, with custom DLL payload injection to…

C exploit for CVE-2022-0847 (Dirty Pipe) enabling privilege escalation via overwriting read-only files and SUID binaries with custom shellcode.

Wordpress REST API | Custom API Generator For Cross Platform And Import Export In WP 1.0.0 - 2.0.3 - Missing Authorization to Unauthenticated…

PowerShell exploit for CVE-2021-1675 (PrintNightmare) performing local privilege escalation via Print Spooler, with custom DLL payload injection and…

PowerShell proof-of-concept exploit for CVE-2021-1675 (PrintNightmare) with custom DLL payload and obfuscated loader for privilege escalation on…

C exploit for CVE-2026-31431 providing privilege escalation through a custom binary payload. Designed for testing and validation of the vulnerability.

Shell script to detect and test systems for the Dirty Pipe (CVE-2022-0847) kernel vulnerability, supporting custom kernel version queries.

Python proof-of-concept exploit for CVE-2026-41651, a TOCTOU local privilege escalation in PackageKit allowing unprivileged users to install packages…

Modular kernel exploitation framework for CVE-2018-19323 (GIGABYTE GDrv) achieving privilege escalation to SYSTEM with multi-architecture support,…

Proof-of-concept exploit for CVE-2025-26153: stored XSS in Chamilo LMS forum threads enabling privilege escalation from regular user to admin via…

PowerShell exploit for PrintNightmare (CVE-2021-1675) performing local privilege escalation via Print Spooler, with custom DLL payload injection to…