Advanced exploits that I wrote for Pwn2Own competitions and other occasions
☆169Mar 23, 2024Updated 2 years ago
Alternatives and similar repositories for Exploits
Users that are interested in Exploits are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Not necessarily related to software bugs and exploits; this repo contains snippets of code that demonstrate some interesting functionalit…☆34Apr 24, 2021Updated 5 years ago
- Zero-day and N-day security vulnerability notes, analysis, and proof-of-concepts☆421Mar 20, 2022Updated 4 years ago
- Full chain Chrome 71.0.3578.98 exploit☆21Jul 18, 2021Updated 4 years ago
- Full Chain Analysis of CVE-2022-4262, a non-trivial feedback slot type confusion in V8.☆106Feb 12, 2025Updated last year
- ☆14Nov 3, 2023Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆16Nov 23, 2021Updated 4 years ago
- ☆130May 15, 2025Updated last year
- This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.☆52Mar 31, 2026Updated last month
- POC of CVE-2022-21881 exploited at TianfuCup 2021 to escape Chrome Sandbox☆21Aug 9, 2022Updated 3 years ago
- 2018 Advent Calendar browser pwnables☆14Feb 14, 2019Updated 7 years ago
- A personal collection of Windows CVE I have turned in to exploit source, as well as a collection of payloads I've written to be used in c…☆121Jul 21, 2022Updated 3 years ago
- SSH & FTP brute-forcing tool written in python☆11Oct 2, 2024Updated last year
- Report and exploit of CVE-2023-36427☆91Nov 22, 2023Updated 2 years ago
- PoC CVE-2021-30632 - Out of bounds write in V8☆73Sep 20, 2021Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆130Aug 23, 2022Updated 3 years ago
- Static binary instrumentation for windows kernel drivers, to use with winafl☆81Feb 5, 2025Updated last year
- ☆70Oct 31, 2023Updated 2 years ago
- ☆26Oct 29, 2021Updated 4 years ago
- This tool calculates tricky canonical huffman histogram for CVE-2023-4863.☆25Dec 20, 2023Updated 2 years ago
- A Pwn2Own 2024 SpiderMonkey JIT Bug: From Integer Range Inconsistency to Bound Check Elimination then RCE☆95Feb 12, 2025Updated last year
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆41May 22, 2024Updated 2 years ago
- ☆23Nov 5, 2021Updated 4 years ago
- ☆28Aug 24, 2025Updated 8 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A POC to disable TamperProtection and other Defender / MDE components☆257Jun 6, 2024Updated last year
- ☆58Jan 29, 2024Updated 2 years ago
- Windows KASLR bypass using prefetch side-channel☆181Apr 26, 2024Updated 2 years ago
- Kernel mode WinDbg extension and PoCs for token privilege investigation.☆911Mar 25, 2026Updated last month
- Fuzzing IoT Devices Using the Router TL-WR902AC as Example☆130Nov 15, 2025Updated 6 months ago
- My Personal Reading lists for CVE Writeups☆38Feb 10, 2022Updated 4 years ago
- A collection of curated resources and CVEs I use for research.☆107Aug 8, 2021Updated 4 years ago
- Slides about HyperDbg☆39Feb 11, 2026Updated 3 months ago
- My Chrome and Safari exploit code + write-up repo☆533Nov 5, 2021Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- September Chrome 1day by István Kurucsai☆81Sep 9, 2019Updated 6 years ago
- ☆187Jan 12, 2023Updated 3 years ago
- DarkRat source - beware untested source and resources.☆22Dec 7, 2019Updated 6 years ago
- ☆143Aug 17, 2022Updated 3 years ago
- A collection of links related to VMware escape exploits☆1,491Sep 4, 2024Updated last year
- CVE-2025-31644: Command Injection in Appliance mode in F5 BIG-IP☆24May 11, 2025Updated last year
- WTF Snapshot fuzzing of macOS targets☆99May 31, 2024Updated last year