
CVE-2026-1457
Provides a detailed analysis and proof-of-concept for CVE-2026-1457, an authenticated buffer overflow in TP-Link VIGI C385 web API leading to remote…

Provides a detailed analysis and proof-of-concept for CVE-2026-1457, an authenticated buffer overflow in TP-Link VIGI C385 web API leading to remote…

Exploit used against the Netgear R6700v3 during Pwn2Own Austin 2021

CVE-2026-66374: Knot Resolver 6.3.0 DNS-over-QUIC heap overflow (RCE)

Reproduction of cve-2025-0282-ivanti_rce_reproduction

Reproduction of cve-2025-32433-erlang_ssh_rce_reproduction

Erlang/OTP SSH 远程代码执行漏洞

A number of exploits and tools I've written for CVEs accredited to Marshall Whittaker/oxagast

CVE-2026-25243 — Redis RESTORE zipmap double-free → remote code execution (ASLR on).

Reliable remote code execution exploit for CVE-2026-25243 targeting jemalloc Redis. Executes arbitrary commands via a single crafted RESTORE command…

CVE Reproduction: cve-2024-38077-madlicense_reproduction

Educational repository of offensive security source code: remote shells, ELF injectors, crypters, memory injection, and droppers for Linux,…

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

32-bit PoC for CVE-2024-6387 — mirror of the original 7etsuo/cve-2024-6387-poc

This is POC of CVE-2024-29671

Proof-of-concept remote code execution exploit for CVE-2020-0796 (SMBGhost) targeting unpatched Windows 10 1903/1909. Delivers a reverse shell via…

CVE-2017-5005 for Quick Heal Antivirus

Educational proof-of-concept exploit for CVE-2020-0796 (SMBGhost) demonstrating pre-auth RCE on Windows SMBv3. Includes step-by-step lab setup,…

CVE-2019-0708 - BlueKeep (RDP)