
themebleed
Proof-of-Concept for CVE-2023-38146 ("ThemeBleed")

Proof-of-Concept for CVE-2023-38146 ("ThemeBleed")

A helper utility for creating shellcodes. Cleans MASM file generated by MSVC, gives refactoring hints.

A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.

x86 Inline hooking engine (using trampolines)

Hijacks code execution via overwriting Control Flow Guard pointers in combase.dll

it works on xp (all version sp2 sp3)


Crystal Palace Evasion kit for Sliver

ASPX web shell with COFF loader for executing Beacon Object Files (BOFs) on target servers via a semi-interactive Python client, designed for…

SpringFramework 远程代码执行漏洞CVE-2022-22965

Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)

rce

A personal collection of Windows CVE I have turned in to exploit source, as well as a collection of payloads I've written to be used in conjunction…

CVE-2020-8012, CVE-2016-10709, CVE-2017-17099, CVE-2017-18047, CVE-2019-1003000, CVE-2018-1999002

C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.

Automated Application Generation for Stack Overflow Types on Wireless Routers

PoC for popping a system shell against the LnvMSRIO.sys driver