
SneakyEXE
Automatic UAC-Bypassing for custom payloads during privilege escalation testing

Automatic UAC-Bypassing for custom payloads during privilege escalation testing

Open source C2 server created for stealth red team operations

WordPress CVE-2024-10924 Exploit for Really Simple Security plugin

Process Explorer vulnerable driver PPL Bypass

Information released publicly by NCC Group's Full Spectrum Attack Simulation (FSAS) team.

Full exploit code for CVE-2026-40369 - A Windows kernel arbitrary write vulnerability that allows browser sandbox escape from all browsers render…

CVE-2026-43499 full exploit chain for Samsung Galaxy S22 Ultra (Android 5.10 kernel)

Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2

Windows local privilege escalation exploit abusing SeManageVolumePrivilege to grant full C:\ drive access and gain a SYSTEM shell via PrintConfig.dll…

Self-contained Python PoC exploiting the MikroTrick SSH chain (CVE-2026-86060, CVE-2026-67279) to gain unauthenticated full admin access on MikroTik…

👻 CVE-2026-54121 - Best CertiGhost AD CS Multi-Exploit Framework | Advanced toolkit with rogue DC/LDAP servers, certificate abuse, PKINIT hash…

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, bypassing LockDown mode protection by exploiting ImageIO (CVE-2025-43300), then…

CVE-2025-0087 EoP full PoC

Python exploit for CVE-2020-1472 (Netlogon Elevation of Privilege) targeting domain controllers to achieve full domain compromise.

macOS TCC bypass exploit leveraging insecure file rename in Music and TV apps to gain Full Disk Access by overwriting the TCC database via a symlink…

My exploit for CVE-2024-48990. Full details of how I made this are on my blog.

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…