


exploits and proof-of-concept vulnerability demonstration files from the team at Hacker House

A collection of proof-of-concept exploit scripts written by the STAR Labs team for various CVEs that they discovered or found by others.

FileReader Exploit

WebLogic利用CVE-2020-2883打Shiro rememberMe反序列化漏洞,一键注册蚁剑filter内存shell

Exploits for CNEXT (CVE-2024-2961), a buffer overflow in the glibc's iconv()

Compromising the macOS Kernel through Safari by Chaining Six Vulnerabilities

CVE-2017-11882 Exploit accepts over 17k bytes long command/code in maximum.

Exploits and Security Tools Framework 2.0.1

A WebKit exploit using CVE-2018-4441 to obtain RCE on PS4 6.20.

Exploit for Sagemcom F@ST 3890 cable modem implementing Cable Haunt vulnerability to achieve remote code execution via WebSocket-based buffer…

This is an exploit for CVE-2020-0674 that runs on the x64 version of IE 8, 9, 10, and 11 on Windows 7.

Proof-of-concept exploit for CVE-2023-41993, a WebKit JIT type confusion in Safari. Provides addrof/fakeobj primitives via heap manipulation and…

Full exploit of CVE-2016-6754(BadKernel) and slide of SyScan360 2016

Exploit for CVE-2018-4233, a WebKit JIT optimization bug used during Pwn2Own 2018

Proof-of-Concept exploit for Edge bugs (CVE-2016-7200 & CVE-2016-7201)

out-of-bounds write in Fortinet FortiOS CVE-2024-21762 vulnerability

macOS 10.13.3 (17D47) Safari Wasm Exploit