
lsawhisper-bof
A Beacon Object File (BOF) that talks directly to Windows authentication packages through the LSA untrusted/trusted client interface, without…

A Beacon Object File (BOF) that talks directly to Windows authentication packages through the LSA untrusted/trusted client interface, without…

Proof-of-concept exploit for CVE-2025-4517, a path traversal vulnerability in Python's tarfile filter='data' sandbox, enabling arbitrary file writes…

Exploit for CVE-2024-6232 - Python Tarfile Realpath Overflow

Shellcodes for Windows >= 11 x64

🔓 Local privilege escalation PoC for CVE-2025-32462 (sudo -h bypass) – gain root via misconfigured sudoers

Linux Shared Library to Shellcode Loader


A Rust template for writing Beacon Object Files (BOFs)

Proof-of-concept for CVE-2026-21508, demonstrating a DLL hijacking attack on Windows 11 that escalates privileges by loading a crafted DLL into…

Modular exploit framework targeting CVE-2026-23550 in WordPress, featuring mass exploitation, obfuscation, post-exploitation, and Docker-based C2…

Tools for maintaining access to systems and proof-of-concept demonstrations.

Code Execution & Persistence in NETWORK SERVICE FAX Service

UAC bypass for x64 Windows 7 - 11

CVE-2021-34527 AddPrinterDriverEx() Privilege Escalation

Automated exploit chain for n8n combining arbitrary file read, admin token forgery, and sandbox bypass to achieve unauthenticated remote code…

A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.

CVE 2025 27237 Zabbix LPE proof of concept.

CheckMK Agent Local Privilege Escalation (PoC)