sickcodes / no-sandbox
No Sandbox - Applications That Run Chromium and Chrome Without The Sandbox. TL;DR exploits in these browser based applications are already sandboxed escaped: https://no-sandbox.io/
☆181Updated 3 years ago
Alternatives and similar repositories for no-sandbox:
Users that are interested in no-sandbox are comparing it to the libraries listed below
- PoC for CVE-2021-28476 a guest-to-host "Hyper-V Remote Code Execution Vulnerability" in vmswitch.sys.☆221Updated 3 years ago
- Linux kernel exploits for local privilege escalation☆77Updated 6 years ago
- d(ockerp)wn - a docker pwn tool manager☆155Updated 3 years ago
- XS-Leak Browser Test Suite☆78Updated last year
- Select proof-of-concept exploits for software vulnerabilities to aid in identifying and testing vulnerable systems.☆185Updated 10 months ago
- Zenith exploits a memory corruption vulnerability in the NetUSB driver to get remote-code execution on the TP-Link Archer C7 V5 router fo…☆127Updated 2 years ago
- research☆151Updated last year
- Electron Research☆70Updated 3 years ago
- PoC for CVE-2022-28281 a Mozilla Firefox Out of bounds write.☆74Updated 2 years ago
- A happy heap editor to support your exploitation process☆195Updated 3 years ago
- PoC of CVE-2020-16947 (Microsoft Outlook RCE vulnerablility)☆124Updated 4 years ago
- A WIP "Vulnerable by Design" kext for iOS/macOS to play & learn *OS kernel exploitation☆230Updated 4 years ago
- Some exploits I have written to showcase and to share☆53Updated 4 years ago
- ☆115Updated last year
- Minimal code to connect to a CEF debugger.☆204Updated 4 years ago
- libc database (file in packages, hash, package files, symbols). Raw binary libc available on https://github.com/BestPig/libc-bin)☆33Updated last month
- This is the full file system fuzzing framework that I presented at the Hack in the Box 2020 Lockdown Edition conference in April.☆146Updated last year
- A proper well structured documentation for getting started with chrome pwning & v8 pwning☆192Updated 2 years ago
- A Chrome extension static analysis tool to help aide in security reviews.☆153Updated last year
- Linux privilege escalation via LXD☆133Updated 5 years ago
- 0day VirtualBox 6.1.2 Escape for RealWorld CTF 2020/2021 CVE-2021-2119☆139Updated 4 years ago
- PoC CVE-2021-37980 : Inappropriate implementation in Sandbox (windows only)☆72Updated 3 years ago
- Proof of concept for CVE-2022-0778, which triggers an infinite loop in parsing X.509 certificates due to a bug in BN_mod_sqrt☆183Updated 2 years ago
- ☆132Updated 3 years ago
- '>"><img src=x onerror=alert(1) /><b>asd</b>☆46Updated 3 years ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆248Updated 5 months ago
- A collection of curated resources and CVEs I use for research.☆105Updated 3 years ago
- A functional exploit for CVE-2019-18634, a BSS overflow in sudo's pwfeedback feature that allows for for privesc☆58Updated 5 years ago
- Cisco ASA Software and ASDM Security Research☆81Updated 2 years ago
- Statically built netcat binaries for Linux (other OSes can be added later)☆35Updated 7 years ago