
collateral-damage
Kernel exploit for Xbox SystemOS using CVE-2024-30088

Kernel exploit for Xbox SystemOS using CVE-2024-30088

Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling without admin…

Windows x64 handcrafted token stealing kernel-mode shellcode

Windows 8.1 and 10 UAC bypass abusing WinSxS in "dccw.exe".

Windows Local Privilege Escalation via CdpSvc service (Writeable SYSTEM path Dll Hijacking)

Previously-0day exploit from the Hacking Team leak, written by Eugene Ching/Qavar.

A delicious, but malicious SSL-VPN server 🌮

A BOF to automate common persistence tasks for red teamers

Exploit Development - Weaponized Exploit and Proof of Concepts (PoC)

CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking

Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.

Python implementation for PrintNightmare (CVE-2021-1675 / CVE-2021-34527)

Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)

Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege

Post-authentication reverse shell exploit for Webmin <=1.984 leveraging CVE-2022-0824 File Manager privilege escalation. Downloads and executes a CGI…

Windows privilege escalation tool that abuses SeImpersonatePrivilege via indirect syscalls, patching ETW and AMSI to elevate from service account or…

PrintNightmare - Windows Print Spooler RCE/LPE Vulnerability (CVE-2021-34527, CVE-2021-1675) proof of concept exploits

Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust.