
CVE-2024-30088
Proof-of-concept exploit for CVE-2024-30088, a Windows kernel TOCTOU vulnerability in AuthzBasepCopyoutInternalSecurityAttributes enabling arbitrary…

Proof-of-concept exploit for CVE-2024-30088, a Windows kernel TOCTOU vulnerability in AuthzBasepCopyoutInternalSecurityAttributes enabling arbitrary…

Proof-of-concept exploit for CVE-2025-24118, an XNU kernel race condition bug enabling local privilege escalation via a setgid binary.

Docker-based proof-of-concept demonstrating a TOCTOU race condition exploit against sudo's Digest_Spec feature (CVE-2015-8239) using inotify for…

A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabilities

Curated collection of top HackerOne bug bounty reports organized by vulnerability type and program, with scripts to fetch, deduplicate, and rank…

macOS TCC bypass exploit leveraging insecure file rename in Music and TV apps to gain Full Disk Access by overwriting the TCC database via a symlink…

Revocation persistence detection lab: when the password reset succeeds but the attacker never leaves. Reproduces the Strapi CVE-2026-22706…

WinRar is a very widely known software for windows. Previous version of WinRaR was a vulnerability which has been patched in Feb-2019. Most of the…

research on finding the bug and fix of CVE-2026-84616 and CVE-2026-84607

CVE-2024–27630 Reference