<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Shell — PoC Archive</title><link>https://poc.intelseclab.com/tags/shell/</link><description>Latest proof-of-concept entries.</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 06 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://poc.intelseclab.com/tags/shell/index.xml" rel="self" type="application/rss+xml"/><item><title>Sudo `chroot` Option Local Privilege Escalation (CVE-2025-32463)</title><link>https://poc.intelseclab.com/pocs/binary/2026-07-06_cve-2025-32463-sudo-chroot-privesc/</link><pubDate>Mon, 06 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/binary/2026-07-06_cve-2025-32463-sudo-chroot-privesc/</guid><description>Critical severity (CVSS 9.3) — binary · CVE-2025-32463. Status: Weaponized. Affects: sudo (-R / --chroot option). Tags: sudo, chroot, privilege-escalation, nsswitch, nss-module, local-privesc, linux, shell, c.</description><category>binary</category><category>Critical</category><category>sudo</category><category>chroot</category><category>privilege-escalation</category><category>nsswitch</category><category>nss-module</category><category>local-privesc</category><category>linux</category><category>shell</category><category>c</category></item><item><title>CrushFTP AS2 Header Authentication Bypass (CVE-2025-54309)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-06_cve-2025-54309-crushftp-as2-auth-bypass/</link><pubDate>Mon, 06 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-06_cve-2025-54309-crushftp-as2-auth-bypass/</guid><description>Critical severity (CVSS 9) — web · CVE-2025-54309. Status: Patched. Affects: CrushFTP server, AS2 (Applicability Statement 2) authentication module / web admin interface. Tags: crushftp, as2, authentication-bypass, cwe-287, cwe-306, cwe-807, session-hijacking, shell, ftp-server.</description><category>web</category><category>Critical</category><category>crushftp</category><category>as2</category><category>authentication-bypass</category><category>cwe-287</category><category>cwe-306</category><category>cwe-807</category><category>session-hijacking</category><category>shell</category><category>ftp-server</category></item><item><title>Claude Desktop Cowork VM Image Integrity Bypass / Local Persistence (CVE-2026-7574)</title><link>https://poc.intelseclab.com/pocs/binary/2026-06-30_cve-2026-7574-claude-desktop-cowork-vm-bypass/</link><pubDate>Tue, 30 Jun 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/binary/2026-06-30_cve-2026-7574-claude-desktop-cowork-vm-bypass/</guid><description>High severity (CVSS 8.7) — binary · CVE-2026-7574. Status: PoC. Affects: Anthropic Claude Desktop — Cowork feature. Tags: LPE, persistence, VM-integrity, rootfs, Claude, AI-application, macOS, ext4, integrity-bypass, Shell.</description><category>binary</category><category>High</category><category>LPE</category><category>persistence</category><category>VM-integrity</category><category>rootfs</category><category>Claude</category><category>AI-application</category><category>macOS</category><category>ext4</category><category>integrity-bypass</category><category>Shell</category></item></channel></rss>