
windows_kernel_shadow_stack
Proof of concepts demonstrating some aspects of the Windows kernel shadow stack mitigation.

Proof of concepts demonstrating some aspects of the Windows kernel shadow stack mitigation.

Repository hosting a hypothetical EDR Spoofer, as discovered originally by Nightmare-Eclipse

Python-Based Pentesting Framework

Educational Linux kernel rootkit PoC exploring DKOM, syscall hooking, stealth, observability and defensive detection

A fully implemented kernel exploit for the PS4 on 5.05FW

WORK IN PROGRESS. RAT written in C++ using Win32 API

PPID Spoofing

Fixed No Virus Manual Automatic Loader exe no zip because zip picks up the anti virus detector.


CVE-2016-0040 Privilege Escalation Exploit For WMI Receive Notification Vulnerability (x86-64)

Escalating privilege in the system from unsigned driver using throttlestop vulnerability

Arbitrary physical memory read/write exploitation using ThrottleStop.sys (CVE-2025-7771) with superfetch address translation - Windows kernel…

Unauthenticated IPC Local Privilege Escalation to SYSTEM via Debauchee Barrier Daemon TCP Port 24801

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

Exploit for CVE-2019-2215 (bad binder) for Huawei P20 Lite

Penetration testing assessment of a vulnerable IIS 6.0 WebDAV server, demonstrating reconnaissance, enumeration, exploitation (CVE-2017-7269), and…

Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)