
CVE-2025-31161
PoC Authentication Bypass to RCE to Exploit CVE-2025-31161

PoC Authentication Bypass to RCE to Exploit CVE-2025-31161

poc for CVE-2025-24252 & CVE-2025-24132

WP Directory Kit <= 1.4.4 - Authentication Bypass to Privilege Escalation via Account Takeover

Shellcode injection using the Windows Debugging API

ADManager Plus Build < 7230 Elevation of Privilege

Windows LPE PoC exploiting the AsInsHelp64.sys driver via arbitrary physical memory read/write to overwrite kernel tokens and gain SYSTEM privileges.

Go-based proof-of-concept for CVE-2025-55182, a critical RCE in React Server Components. Features vulnerability checking, command execution, memory…

Technical analysis and proof-of-concept for CVE-2025-6019, a local privilege escalation vulnerability in libblockdev and udisks2, enabling root…

Local PE injection technique using hardware breakpoints and vectored exception handling to manipulate DLL loading and execute arbitrary payloads, as…

Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan in-memory…

i tried this in Conversor HTB machine

PoC to exploit lenovo dispatcher driver (LnvMSRIO.sys) (CVE-2025-8061)

A powerful shell script for creating custom WSL (Windows Subsystem for Linux) distributions with embedded payloads.

DLL hijacking to rev shell

A way to delete a locked file, or current running executable, on disk.

Full exploit for needsrestart setuid root shell

A tool to transform Chromium browsers into a C2 Implant

UEFI rootkit under development focusing on privilege escalation, C2 integration, and anti-EDR/AV evasion for real-world malware deployment.