
RegPwn
利用经过测试的CVE-2026-24291代码,在客户端和服务器上实现Windows本地权限提升,支持多个Windows版本。

oob_entry tfp0 kernel exploit for armv7 iOS (iOS 3.0–10.3.4), using CVE-2023-32434. We will publish a write-up detailing the methods in the coming…

NebuSec 发现的 CVE 的概念验证(PoC)和漏洞利用

在 Android GKI 6.12 设备上利用 CVE-2026-43499:确定性任意内核读/写、KASLR 绕过,以及通过 LD_PRELOAD 载荷获得完全 root 权限。

Local privilege escalation exploit targeting a Linux kernel io_uring AF_VSOCK reference-count bug, using page-cache manipulation to overwrite…

Redis UAF RCE PoC collection for CVE-2026-23479: safe version checker, exploit module, GDB-assisted PoC, and Sigma detection rules for authorized…

针对 Android Binder UAF 的概念验证型 LPE 漏洞利用,通过 iovec 喷射和 addr_limit 覆盖实现任意内核读写。

针对三星 Galaxy A17 上 CVE-2026-43499 的内核漏洞利用,通过 KDP 绕过、KASLR 恢复和伪造 workqueue 执行实现 root 权限,并获得持久化 shell。

利用CVE-2026-31431在Linux上通过Rust实现,借助任意页面缓存写原语实现本地权限提升。

GhostLock CVE-2026-43499 research for Galaxy S26 (SM-S942U1/m1q): SELinux Permissive achieved, KASLR + tracefs port, uid=0 boundary documented

GhostLock (CVE-2026-43499) adaptation for non-Android Linux 6.x ARM64

Generates per-device kernel offsets from boot.img and compiles a preload library to exploit CVE-2026-43499 Android arm64 local privilege escalation.

HP Slate 7 2800 Android 4.1.1 的 Root 工具包,利用 CVE-2015-1805 漏洞。

CVE-2026-43499 (GhostLock) — Linux 内核 futex PI rt_mutex UAF ARM32 权限提升研究,针对华为 Watch 4 Pro(内核 5.4.210)

针对 CVE-2026-14669 的概念验证漏洞利用程序,该漏洞为 PostgreSQL to_char() 时区缩写中的堆缓冲区溢出,可通过信息泄露和 ROP 链实现 RCE(远程代码执行);包含 Docker 实验环境与自动化 PoC。

针对某些 5.X 设备(多为 Amazon 设备)的内核 root 漏洞利用(CVE-2026-43499)

iQOO Neo9 (PD2338C) 免解锁 Caps-Root 工具** — 基于 CVE-2025-21479 (Adreno GPU SDS) 的任意物理写提权方案

触发 CVE-2026-62737 的 PowerShell 概念验证,该漏洞在 ExecutionContext.sys 中造成任意内核调用,可在 Windows 11 上导致受控的内核崩溃。