
CVE-2023-7231
PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

eventin <= 4.0.34 - privilege escalation via user email change / account takeover for authenticated contributor+

Copy Fail (CVE-2026-31431) is a logic flaw in the Linux kernel's algif_aead module — part of the AF_ALG userspace crypto API. It was disclosed on…

Local privilege escalation exploit for CVE-2026-31431, abusing AF_ALG AEAD socket handling to achieve root shell access on vulnerable Linux kernels.

Exploit for CVE-2026-31431, a Linux kernel AF_ALG AEAD page-cache write vulnerability enabling unprivileged arbitrary 4-byte writes to readable files…

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Red team automation framework built on Cobalt Strike, integrating exploit modules, post-exploitation tools, and lateral movement capabilities for…

This repo covers some code execution and AV Evasion methods for Macros in Office documents

Proof of concept code for Datadog Security Labs referenced exploits.

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

BOF for Kerberos abuse (an implementation of some important features of the Rubeus).

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

PoCs for Kernelmode rootkit techniques research.

Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#, C++,…

Comprehensive self-paced manual on Windows identity, Kerberos, and PKI internals, covering credential dumping, ticket forgery, domain persistence,…

A PS5 hypervisor exploit for 1.xx-2xx firmwares.