
xsser
From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras
exploitationpayload-developmentpenetration-testing+3
4246 years ago

From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras

PoC for popping a system shell against the LnvMSRIO.sys driver

Exploit for CVE-2021-40449

CVE-2023-2640 CVE-2023-32629

用于CVE-2025-32463 sudo_chwoot的权限提升POC,适配了有gcc编译环境和无gcc编译环境的两种情况,下载运行即可一把梭哈

CVE-2023-6246 glibc __vsyslog_internal() heap buffer overflow exploitation using Convergent Time Theory (α = 0.0302011). 33-layer temporal heap spray…

CVE-2023-4911

Python-based proof-of-concept exploit for CVE-2023-4911 (Looney Tunables) targeting glibc dynamic loader's parse_tunables() for local privilege…