
CVE-2026-74469
Research repository for CVE-2026-74469 (DiagSpill), a Linux kernel SCTP peer transport counter overflow causing an out-of-bounds write, with PoC,…

Research repository for CVE-2026-74469 (DiagSpill), a Linux kernel SCTP peer transport counter overflow causing an out-of-bounds write, with PoC,…

Kioptrix Level 1 writeup - CVE-2003-0201 Samba trans2open

HackTheBox Facts machine writeup — CVE-2025-2304, MinIO S3 enumeration, SSH key cracking, and facter privilege escalation.

Deep-dive analysis of Windows CLFS type confusion (CVE-2022-24481) with root-cause explanation, exploitation flow, kernel gadget details, and working…

Proof-of-concept for stored XSS in ThingsBoard IoT platform enabling privilege escalation via authentication token theft. Includes CVE-2024-55466…

Kerberos relay framework for Windows environments enabling authentication relay, privilege escalation, and lateral movement via LDAP, SMB, HTTP, and…

Compromising the macOS Kernel through Safari by Chaining Six Vulnerabilities

Bypassing UAC with SSPI Datagram Contexts

DCOM in memory and fileless lateral movement techniques through .Net deserilization

PoCs and technical analysis for three Cisco AnyConnect Windows vulnerabilities: local privilege escalation (CVE-2020-3433), denial of service…

Nim-based proof-of-concept for CVE-2021-4034 (PwnKit), a local privilege escalation in polkit's pkexec, with embedded payload library for standalone…


CVE-2025-27591 – Meta below symlink following local privilege escalation (HackTheBox CTF)

Automated exploitation framework for CVE-2025-55182 (Next.js RCE) with subdomain enumeration, vulnerability scanning, payload generation, and…

Proof of concept for the recent CVE-2026-25232 which is a priv esc vulnerability present in Gogs.

Proof-of-concept exploit for CVE-2022-24644, demonstrating unauthenticated remote code execution via DNS spoofing against KeyMouse Windows 3.08…

PoC for LPE with QlikView

Proof-of-concept exploit for CVE-2021-4034 (PwnKit), a local privilege escalation in polkit's pkexec, enabling privilege escalation on vulnerable…