
watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452
Proof-of-concept exploit for Citrix NetScaler CVE-2026-8452 that verifies pre-auth RCE by building shellcode and executing commands through a…

Proof-of-concept exploit for Citrix NetScaler CVE-2026-8452 that verifies pre-auth RCE by building shellcode and executing commands through a…

Study of a classic stack-based buffer overflow vulnerability in a controlled lab environment for educational purposes.

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

PoCs and tools for investigation of Windows process execution techniques

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

A multi-arch assembly REPL and emulator for your command line.

bespoke tooling for offensive security's Windows Usermode Exploit Dev course (OSED)

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Palo Alto - CVE-2026-0300 exploit

Crystal Palace library for proxying Nt API calls via the Threadpool. Updated for call gadgets.

Windows User-Mode Shellcode Development Framework (WUMSDF)

bin2shell is very small utils for extract shell code from the binary file

Previously-0day exploit from the Hacking Team leak, written by Eugene Ching/Qavar.