forrest-orr / Exploits
A personal collection of Windows CVE I have turned in to exploit source, as well as a collection of payloads I've written to be used in conjunction with these exploits.
☆120Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for Exploits
- ☆111Updated 2 years ago
- ☆71Updated last year
- Random CVEs☆27Updated last year
- ROP ROCKET is an advanced code-reuse attack framework, with extensive ROP chain generation capabilities, including for novel Windows Sysc…☆111Updated 2 months ago
- A personalized/enhanced re-creation of the Darkhotel "Double Star" APT exploit chain with a focus on Windows 8.1 and mixed with some of m…☆145Updated 2 years ago
- ☆71Updated 4 months ago
- Exploit Development - Weaponized Exploit and Proof of Concepts (PoC)☆216Updated last year
- Windows internals and exploitation tricks☆92Updated 5 months ago
- Aplos an extremely simple fuzzer for Windows binaries.☆66Updated 7 months ago
- ☆45Updated 5 years ago
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆112Updated 6 months ago
- ☆82Updated 2 years ago
- Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation☆124Updated 7 months ago
- Some of my windows kernel exploits for learning purposes☆115Updated 2 years ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆178Updated 2 years ago
- Loads a custom dll in system32 via diaghub.☆68Updated 4 years ago
- ☆95Updated 2 years ago
- Detect strange memory regions and DLLs☆170Updated 2 years ago
- Evasion Escaper is a project aimed at evading the checks that malicious software performs to detect if it's running in a virtual environm…☆99Updated last year
- Inter-Process Communication Mechanisms☆24Updated 4 years ago
- An attempt to restore and adapt to modern Win10 version the 'Rootkit Arsenal' original code samples☆66Updated 2 years ago
- ShellWasp is a tool to help build shellcode that utilizes Windows syscalls, while overcoming the portability problem associated with Wind…☆160Updated last year
- PoC demonstrating the use of cve-2020-1034 for privilege escalation☆119Updated 3 years ago
- ☆24Updated last year
- ☆103Updated 4 months ago
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆63Updated 2 months ago
- CVE-2024-30090 - LPE PoC☆93Updated last month
- Process Monitor filter for finding privilege escalation vulnerabilities on Windows☆78Updated 3 years ago
- ☆154Updated 3 years ago