
CVE-2019-18634
My n-day exploit for CVE-2019-18634 (local privilege escalation)

My n-day exploit for CVE-2019-18634 (local privilege escalation)

CVE-2024-32462 code exec sbx escape

CVE-2020-0688: Remote Code Execution on Microsoft Exchange Server Through Fixed Cryptographic Keys

Automated exploit script for CVE-2018-20250 (WinRAR ACE extraction code execution) that generates a malicious archive file embedding a payload into…

A security auditing toolkit for CVE-2026-31431 vulnerability research

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…

Identify privilege escalation paths within and across different clouds

Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs

POC for CVE-2021-41091


Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…

This project demonstrates a simulated exploitation of the WinRAR vulnerability CVE-2023-38831 to execute a reverse shell. The purpose of this task…

A POC C2 server and agent to explore just if/how the Ethereum blockchain can be used for C2

Rogue access point tool for creating captive portals, phishing credentials via cloned login pages, and injecting malware downloads for educational…

My exploit for CVE-2024-48990. Full details of how I made this are on my blog.

Windows protocol library, including SMB and RPC implementations, among others.

This is a concept poc of command and control server implemented over blockchain

Test a network's egress controls with various levels of success and failure.