




Linux kernel LPE exploit (CVE-2026-31431) using AF_ALG + splice to overwrite setuid-binary page cache for root. No race conditions, works on all…

The exploit targets a LPE works on macOS 14.0-14.1.2, 13.0-13.6.2, 12.0-12.7.1

More portable POC of copyfail LPE (CVE-2026-31431) that works on Alpine Linux

New generation of wmiexec.py

AWS Identity and Access Management Visualizer and Anomaly Finder

BOF combination of KillDefender and Backstab

LPE exploit for CVE-2023-36802

A proof of concept for CVE-2023–1326 in apport-cli 2.26.0

An implementation of baton drop (CVE-2022-21894) for armv7 (MSM8960)

Docker CVE-2022-37708

Kernel-mode syscall wrapper with Zydis-based dynamic pattern finding for Windows 10/11


Toshiba Qiomem.sys vulnerable driver POC (CVE-2026-56129)