
GIUDA
Ask a TGS on behalf of another user without password

Ask a TGS on behalf of another user without password

Bypassing NTFS permissions to read any files as unprivileged user.

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

Using CVE-2021-40449 to manual map kernel mode driver

C# port of the Get-AppLockerPolicy PS cmdlet

LSTAR - CobaltStrike Translated to EN

Heap OOB write in MariaDB JSON_SCHEMA_VALID() → persistent privilege escalation (lab-assisted)

An implementation of F5's `mcp` protocol, including MitM tooling to sniff traffic while vuln hunting

Below code takes advantage of a known vulnerability [Dirty COW (CVE-2016-5195)] 🔥

Druva inSync Windows Client 6.6.3 - Local Privilege Escalation (PowerShell) RCE

race condition in apport lead to Local Privilege Escalation on Ubuntu

Compled version of CVE-2022-0847 aka Dirty Pipe. Just one shot to root them all :D

cve-2025-23266-migration-bypass

Looney Tunables CVE-2023-4911

CVE-2016-1240 exploit and patch

Full walkthrough of HTB's Reactor machine — exploit CVE-2025-55182 to gain a shell, then get root via an exposed Node.js debugger. Step-by-step with…

A root tool based on the [CVE-2015-1805 vulnerability](https://access.redhat.com/security/cve/cve-2015-1805) It supports 32 and 64bit, get sys call…

Local Privilege Escalation in polkit's pkexec (CVE-2021-4034)