Cr4sh / efiXplorerLinks
IDA plugin for UEFI firmware analysis and reverse engineering automation
☆14Updated 3 years ago
Alternatives and similar repositories for efiXplorer
Users that are interested in efiXplorer are comparing it to the libraries listed below
Sorting:
- r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems☆11Updated 7 years ago
- ASUSTeK AsIO3 I/O driver unlock☆23Updated 4 years ago
- SMM rootkit similar to LoJax or MosaicRegressor☆139Updated 2 years ago
- A UEFI extraction tool☆21Updated last year
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆63Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆27Updated 2 years ago
- Exploits pack for the Windows Kernel mode driver HackSysExtremeVulnerableDriver written for educational purposes.☆66Updated 4 years ago
- clone of armadillo patched for windows☆47Updated last year
- This utility allows you to lock every available memory regions of an arbitrary process into its working set.☆69Updated 2 years ago
- Exploit POC for CVE-2024-36877☆47Updated last year
- NT AUTHORITY\SYSTEM☆42Updated 5 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Updated 2 years ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆85Updated 5 years ago
- Information about a signed UEFI Shell that can be used when Secure Boot is enabled.☆83Updated 4 years ago
- The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303…☆142Updated 4 years ago
- System Management RAM analysis tool☆83Updated last year
- GPU keylogger PoC by Team Jellyfish☆28Updated 2 years ago
- IDA plugin to deobfuscate emotet CFF☆18Updated 3 years ago
- ☆24Updated 4 years ago
- Neutralize KEPServerEX anti-debugging techniques☆32Updated 2 years ago
- Plugins related to LeechCore☆43Updated 3 weeks ago
- Hidden kernel mode code execution for bypassing modern anti-rootkits.☆85Updated 14 years ago
- Compact MBR Bootkit for Windows☆54Updated 3 years ago
- Call arbitrary Windows kernel-mode functions from Python on another machine☆44Updated 4 years ago
- LOJAX ROOTKIT (UEFI) +PDF Included[x]☆35Updated 2 years ago
- Miscellaneous Code and Docs☆84Updated 3 months ago
- A research project about Windows notify routines.☆38Updated 5 years ago
- Enumerate user mode shared memory mappings on Windows.☆125Updated 4 years ago
- ☆13Updated 2 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆27Updated 4 years ago