
VulnHub-DC1-Writeup
VulnHub DC-1 boot-to-root — exploiting CVE-2018-7600 (Drupalgeddon2) for RCE, extracting DB credentials from settings.php, forging admin password…

VulnHub DC-1 boot-to-root — exploiting CVE-2018-7600 (Drupalgeddon2) for RCE, extracting DB credentials from settings.php, forging admin password…

AArch64 fuzzer based on the Apple Silicon hypervisor

Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.

A PS5 hypervisor exploit for 1.xx-2xx firmwares.

Remote hypervisor development class for security researchers; covers virtualization internals, hypervisor security, and vulnerabilities in privileged…

Proof-of-concept exploit for CVE-2022-23087 demonstrating exploitation of a hypervisor memory corruption vulnerability.

Kioptrix Level 1 writeup - CVE-2003-0201 Samba trans2open

Security issue in the hypervisor firmware of some older Qualcomm chipsets

Report and exploit of CVE-2024-21305.

Proof-of-concept exploit for CVE-2023-20872, demonstrating VMware guest-to-host escape via a crafted binary payload targeting hypervisor memory…

Proof-of-concept exploit for CVE-2023-46813 targeting AMD SEV-SNP. Escalates privileges by manipulating hypervisor memory type changes to swap task…

A Vagrant VM test lab to learn about CVE-2021-38647 in the Open Management Infrastructure agent (aka "omigod").

The official Sentinel Edition v7.11 - Hypervisor Detection & Kernel Memory Audit Suite for Honor Magic V2. Investigating CVE-2025-38352 and EL2 RKP…

A hypervisor for fuzzing built with WHVP and Bochs

Distributed, code-coverage guided snapshot-based fuzzer for user and kernel-mode targets on Windows and Linux, with emulator and hypervisor backends.