
snapchange
Lightweight fuzzing of a memory snapshot using KVM

Lightweight fuzzing of a memory snapshot using KVM

Automated VirtualBox lab for exploiting CVE-2024-47176 (CUPS RCE) with a custom Python exploit, target Ubuntu VM, and Kali attacker VM for hands-on…

Tracking Januscape (CVE-2026-53359), the KVM/x86 guest-to-host escape

VM Escape for Parallels Desktop <18.1.1

A fuzzer for full VM kernel/driver targets

VM Escape for Parallels Desktop <18.1.1

Oracle VM VirtualBox for Windows prior to 7.0.16 - Elevation of Privileges

ARM64 ELF Virtual Machine Protection System

CVE-2026-66804 Windows Cross Device virtual camera EoP - Standard user to SYSTEM

Recursive MMIO VM Escape PoC

PoC exploit for CVE-2026-11114 demonstrating Node.js vm sandbox escape via Proxy to achieve remote code execution against a vulnerable HTTP /eval…

Custom vulnerable VM (Ubuntu 14.04) designed for teaching multi-stage penetration testing. Features 10 interconnected challenges across Forensics,…

Precompiled binaries for Privilege Escalation in Oracle VM Virtual box prior to 7.0.16

Hands-on lab demonstrating exploitation of CVE-2025-6018 and CVE-2025-6019 using a pre-configured openSUSE Leap VM with Vagrant and VirtualBox for…

SLUBStick exploitation of CVE-2022-2588. Converting a DF into a cross-cache arbitrary memory R/W primitive through PTE manipulation.

Reproducible lab for CVE-2026-23398, a Linux kernel NULL dereference in icmp_tag_validation() triggered by ICMP Fragmentation Needed packets, causing…

Educational lab demonstrating unauthenticated RCE in Langflow via CVE-2026-33017, with automated VM setup and a PoC exploit for reverse shell.

Proof-of-concept exploit for CVE-2018-1002105, a Kubernetes privilege escalation vulnerability allowing unauthorized command execution in pods via…