
FakeImageExploiter
Use a Fake image.jpg to exploit targets (hide known file extensions)

Use a Fake image.jpg to exploit targets (hide known file extensions)

CVE-2021-34527 is a critical remote code execution and local privilege escalation vulnerability dubbed "PrintNightmare."

Inject DLLs into the explorer process using icons

Hijacks code execution via overwriting Control Flow Guard pointers in combase.dll

Data-only exploit for CVE-2024-0582

Proof-of-concept exploit for CVE-2021-4034 (PwnKit) that escalates privileges to root via a shared library injection in polkit's pkexec.

Exploit CVE-2025-1974 with a single file.

Proof-of-concept exploit for CVE-2025-0117 in GlobalProtect, achieving privilege escalation to SYSTEM via a backdoored installer and DLL injection.

A rust library that allows you to host the CLR and execute dotnet binaries.

We found a way to DLL sideload with cleanmgr.exe

This repository contains a Proof-of-Concept (PoC) exploit for the Baron Samedit vulnerability (CVE-2021-3156). The exploit demonstrates privilege…

Some Rust program I wrote while learning Malware Development

Automated exploit for CVE-2024-415770: leverages SSRF to achieve RCE, registers an agent on the teamserver, opens a socket, and injects an SSH key…

JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfigurations (like not…


CVE-2024-53691

Proof-of-concept exploit for CVE-2024-55503, a local command injection in Termius for macOS via DYLD_INSERT_LIBRARIES, demonstrating arbitrary code…
