
CVE-2021-36934
PowerShell scripts to detect and remediate CVE-2021-36934 privilege escalation vulnerability via SAM permission validation and VSS shadow copy…

PowerShell scripts to detect and remediate CVE-2021-36934 privilege escalation vulnerability via SAM permission validation and VSS shadow copy…

Automates local privilege escalation to SYSTEM on domain-joined Windows workstations by relaying NTLM authentication from WebDAV to LDAP, leveraging…

Attempt at Obfuscated version of SharpCollection

PoC for CVE-2023-32749 affecting Pydio Cells

Proof-of-concept exploit for CVE-2021-4034, a local privilege escalation in polkit's pkexec, demonstrating exploitation on Ubuntu systems.

Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…

Exploit for CVE-2026-46215, a Linux kernel DRM GEM use-after-free local privilege escalation. Uses racing, slab spraying, and Dirty Pipe-style file…

Small and dirty PoC for CVE-2021-36934

CVE-2026-46331 and CVE-2026-43503

Safe detection tooling for CVE-2026-31431 "Copy Fail" and CVE-2026-43284 "Dirty Frag" — a local privilege escalation in the Linux kernel's algif_aead…

CVE-2026-43284 and CVE-2026-43500 Dirty Frag PoC and exploit

Educational documentation for exploiting CVE-2022-1329 in WordPress/Elementor and using Dirty Pipe (CVE-2022-0847) to escalate privileges on Ubuntu…

Detection rules and analysis for Dirty Frag (CVE-2026-43284/CVE-2026-43500) Linux kernel LPE vulnerability. Based on community research and health…

Non-weaponized CVE-2016-5195 (Dirty COW) analysis and validation harness with root-cause research, upstream patch review, and safe lab-only PoC for…

Proof-of-concept exploit for CVE-2021-4034 (Pwnkit), a local privilege escalation vulnerability in polkit's pkexec, allowing unprivileged users to…

Docker exploit

Working Dirty Pipe (CVE-2022-0847) exploit tool with root access and file overwrites.

Educational PoC for Dirty COW (CVE-2016-5195) with logging, ptrace fallback, and binary payload support.