Zero-day and N-day security vulnerability notes, analysis, and proof-of-concepts
☆426Mar 20, 2022Updated 4 years ago
Alternatives and similar repositories for Disclosures
Users that are interested in Disclosures are comparing it to the libraries listed below
Sorting:
- Not necessarily related to software bugs and exploits; this repo contains snippets of code that demonstrate some interesting functionalit…☆35Apr 24, 2021Updated 4 years ago
- September Chrome 1day by István Kurucsai☆82Sep 9, 2019Updated 6 years ago
- A collection of links related to VMware escape exploits☆1,495Sep 4, 2024Updated last year
- My Chrome and Safari exploit code + write-up repo☆532Nov 5, 2021Updated 4 years ago
- Dump of win32k POCs for bugs I've found☆380Mar 6, 2022Updated 4 years ago
- Advanced exploits that I wrote for Pwn2Own competitions and other occasions☆170Mar 23, 2024Updated last year
- PoC for CVE-2019-0888 - Use-After-Free in Windows ActiveX Data Objects (ADO)☆40Jul 9, 2019Updated 6 years ago
- Windows 10 RS2/RS3 exploitation primitives based on the OffensiveCon 2018 talk☆57Feb 27, 2018Updated 8 years ago
- keynote I gave at GreHack 2019☆19Nov 17, 2019Updated 6 years ago
- A Collection of Chrome Sandbox Escape POCs/Exploits for learning☆860Jun 4, 2020Updated 5 years ago
- Toolkit for Hyper-V security research☆158Mar 7, 2022Updated 4 years ago
- Binary coverage tool without binary modification for Windows☆449Aug 12, 2020Updated 5 years ago
- Project Zero Docs and Tools☆846Feb 4, 2026Updated last month
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆443Apr 11, 2025Updated 11 months ago
- ☆151Jan 7, 2020Updated 6 years ago
- awesome list of browser exploitation tutorials☆2,270Sep 18, 2023Updated 2 years ago
- ☆135Dec 15, 2019Updated 6 years ago
- Windows syscall fuzzer that I used in 2017 & 2018. Not much to say about it but maybe helpful to someone. At least syscall information it…☆20Nov 20, 2019Updated 6 years ago
- Analysis of public exploits or my 1day exploits☆617Oct 1, 2020Updated 5 years ago
- DynamoRIO plugin to get ASAN and SanitizerCoverage compatible output for closed-source executables☆214Sep 17, 2021Updated 4 years ago
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆214Jul 2, 2020Updated 5 years ago
- A JavaScript Engine Fuzzer☆2,167Updated this week
- Attacking-Edge-Through-the-JavaScript-Compiler☆91Feb 15, 2019Updated 7 years ago
- Binary, coverage-guided fuzzer for Windows, macOS, Linux and Android☆1,299Mar 2, 2026Updated 2 weeks ago
- adobe afdko fuzz☆41Aug 12, 2019Updated 6 years ago
- Kernel Stack info leak at exportObjectToClient function☆42May 21, 2019Updated 6 years ago
- PoC for CVE-2017-0075☆37Sep 12, 2019Updated 6 years ago
- PoC for CVE-2021-28476 a guest-to-host "Hyper-V Remote Code Execution Vulnerability" in vmswitch.sys.☆226Jun 1, 2021Updated 4 years ago
- List of Awesome Advanced Windows Exploitation References☆1,552Jan 13, 2022Updated 4 years ago
- Windows Graphics Device Interface (GDI+) fuzzer☆130Aug 13, 2020Updated 5 years ago
- Compromising the macOS Kernel through Safari by Chaining Six Vulnerabilities☆413Mar 19, 2021Updated 5 years ago
- Full exploit chain (CVE-2019-11708 & CVE-2019-9810) against Firefox on Windows 64-bit.☆625Jun 13, 2020Updated 5 years ago
- TrueType and OpenType font fuzzing toolset☆438Aug 28, 2019Updated 6 years ago
- Kernel Fuzzer for Xen Project (KF/x) - Hypervisor-based fuzzing using Xen VM forking, VMI & AFL☆474Jul 8, 2024Updated last year
- A lightweight dynamic instrumentation library☆1,328Mar 13, 2026Updated last week
- POC viruses I have created to demo some ideas☆59Apr 12, 2020Updated 5 years ago
- Some kernel fuzzing paper about windows and linux☆255Oct 9, 2017Updated 8 years ago
- A collection of JavaScript engine CVEs with PoCs☆2,315Sep 3, 2019Updated 6 years ago
- Kernel driver to fuzz Hyper-V hypercalls☆136Feb 15, 2019Updated 7 years ago