
Follina
Remote Access Shell for Windows (based on cve-2022-30190)

Remote Access Shell for Windows (based on cve-2022-30190)

Scanner for Windows Print Spooler service vulnerability CVE-2021-34527, based on cube0x0's PoC, enabling detection of exploitable targets.

Windows x86 PoC: Stack‑based buffer overflow with custom shellcode on legacy 32-bit Windows.

Local privilege escalation exploit for Symantec Endpoint Protection (CVE-2019-12750) targeting x64 Windows systems, based on published vulnerability…

Modified .NET deserialization payload for CVE-2021-42321, based on ysoserial.net, that writes files and bypasses Windows Defender to target Microsoft…

Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CVE-2020-17087…

Windows Exploit Suggester - Next Generation

Python exploit for CVE-2023-26360 targeting Adobe ColdFusion unauthenticated RCE via log poisoning and template execution, supporting Windows and…

Simple exploit for Easy RM to MP3 Converter 2.7.3.700 on Windows 7 32b.

Distributed, code-coverage guided snapshot-based fuzzer for user and kernel-mode targets on Windows and Linux, with emulator and hypervisor backends.

Proof-of-concept exploit for CVE-2021-34427 targeting Birt Viewer 4.8.0 on Windows. Demonstrates exploitation of a remote code execution…

Windows kernel exploit for CVE-2020-17057 using palette objects with dangling data pointers, targeting type isolation bypass for privilege escalation.

Proof-of-concept exploit for PreAuth RCE in ManageEngine ServiceDesk Plus (CVE-2021-44077). Uploads and executes arbitrary Windows executables on…

Cobalt Strike aggressor script implementing CVE-2020-0796 local privilege escalation via reflective DLL injection for Windows 10 and Server 1903/1909.

Proof-of-concept demonstrating CVE-2020-0601 by crafting a rogue root CA and signed certificate that bypasses Windows certificate chain validation.

Windows kernel exploit leveraging an arbitrary read vulnerability combined with Superfetch to achieve elevation of privilege from low integrity.

This program is an script developed in Python which exploit the ACE vulnerability on WinRar - Vulnerability CVE-2018-20250

Proof-of-concept exploit for CVE-2020-10665 demonstrating local privilege escalation in Docker Desktop for Windows via hardlink-based arbitrary file…