
CVE-2026-37071
Proof-of-concept exploit for CVE-2026-37071: arbitrary file rename in Veno File Manager 4.4.9 enabling privilege escalation to super administrator…

Proof-of-concept exploit for CVE-2026-37071: arbitrary file rename in Veno File Manager 4.4.9 enabling privilege escalation to super administrator…

Rust PoC for a Linux kernel local privilege escalation vulnerability, exploiting the Crypto API and splice to overwrite page cache and modify…

A security auditing toolkit for CVE-2026-31431 vulnerability research

Penetration testing assessment of a vulnerable IIS 6.0 WebDAV server, demonstrating reconnaissance, enumeration, exploitation (CVE-2017-7269), and…

Full penetration testing workflow: credential brute force, SSH access and privilege escalation (CVE-2021-4034)

CVE-2026-31431 - Linux Kernel Page Cache Vulnerability

Sudo Heap Overflow Baron Samedit

Educational Linux kernel exploit for CVE-2021-22600 using the DirtyPagetable technique to achieve local privilege escalation.

Proof-of-concept exploit for CVE-2025-32463, a sudo chroot privilege escalation vulnerability, demonstrating arbitrary shared object loading to gain…

The objective is to conduct a full-scale security assessment of a WordPress-based web application, culminating in a complete server compromise. The…

Red Team exploitation of CVE-2021-3156 (Baron Samedit) – Heap Buffer Overflow in Sudo leading to Local Privilege Escalation on Ubuntu 20.04

Full-lifecycle penetration test of a legacy Linux environment (Metasploitable 2) emulated on Apple Silicon. Demonstrating network reconnaissance, RCE…


Linux kernel use-after-free (UAF) privilege escalation exploit for CVE-2018-17182, targeting kernel versions 3.16 to 4.18.8. Includes PoC and…

Threat intelligence and incident response case study on LockBit ransomware exploiting CVE-2023-4966 (Citrix Bleed).

Dirty COW Privilege Escalation (CVE-2016-5195)

Educational, non-functional Linux kernel exploit template for CVE-2024-1086 — lab-only security research and teaching (use in controlled VMs only).

Step-by-step penetration testing lab exploiting Samba CVE-2007-2447 on Metasploitable 2 using Metasploit, demonstrating root compromise, credential…