
kernelpop
kernel privilege escalation enumeration and exploitation framework

kernel privilege escalation enumeration and exploitation framework

Mac OS X rootkit - for learning purposes

OS X 10.11.6 LPE PoC for CVE-2016-4655 / CVE-2016-4656

RootPipe (CVE-2015-1130) and Phoenix (CVE-2015-3673) vulnerability testing utility for Mac OS X 10.2.8 and later

Powerview on steroids

Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data

Lifetime AMSI bypass by @ZeroMemoryEx ported to .NET Framework 4.8

SUIDGuard - a TrustedBSD Kernel Extension that adds mitigations to protect SUID/SGID processes a bit more

Vulnerability Description of CVE-2020-15349

An evil RAT (Remote Administration Tool) for macOS / OS X.

Local privilege escalation for OS X 10.10.5 via CVE-2016-1828.

Local privilege escalation exploit for macOS (CVE-2016-1757) using Mach IPC race condition to bypass SIP and SUID protections, targeting multiple OS…

Proof of Concept OS X Application for RootPipe Privilege Escalation Vulnerability (CVE-2015-1130)

SUPERAntiSpyware Professional X <=10.0.1264 LPE Vulnerability PoC

Local privilege escalation for OS X 10.10.5 via CVE-2016-1828.

Local privilege escalation for OS X 10.10.5 via CVE-2016-1828.

SUPERAntiSyware Professional X Trial <= 10.0.1206 Local Privilege Escalation

xnu local privilege escalation via cve-2015-???? & cve-2015-???? for 10.10.5, 0day at the time | poc or gtfo