
Pokemon-Shellcode-Loader
Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

A personalized/enhanced re-creation of the Darkhotel "Double Star" APT exploit chain with a focus on Windows 8.1 and mixed with some of my own…

PoC for popping a system shell against the LnvMSRIO.sys driver

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

A concept of using a ROP chain paired with a WRMSR primitive to call kernel functions and map unsigned drivers through BYOVD (AmdTools64.sys)

ImaegMagick Code Execution (CVE-2016-3714)

Modern PIC implant for Windows (64 & 32 bit)

it works on xp (all version sp2 sp3)

PoC for CVE-2025-22457 - A remote unauthenticated stack based buffer overflow affecting Ivanti Connect Secure, Pulse Connect Secure, Ivanti Policy…

Apache ActiveMQ漏洞综合利用工具(CVE-2015-5254,CVE-2016-3088,CVE-2022-41678,CVE-2023-46604,CVE-2024-32114,CVE-2026-34197,CVE-2026-40466, CVE-2026-42588)

Get your data from the resource section manually, with no need for windows apis

ShellcodeFluctuation PoC ported to Nim

Remote Code Execution via Use-After-Free in JScript.dll (CVE-2025-30397)

Linux Shared Library to Shellcode Loader

Exploit for CVE-2021-40449

An exploit for CVE-2019-17026. It pops xcalc and was tested on Ubuntu (x64).

CVE-2017-13089

SMTP vulnerability scanner and exploit script that checks for CVE-2024-45519 and establishes a reverse shell on vulnerable servers.