Cr4sh / fwexpl
PC firmware exploitation tool and library
☆246Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for fwexpl
- PEI stage backdoor for UEFI compatible firmware☆209Updated 3 years ago
- Some scripts for IDA Pro to assist with reverse engineering EFI binaries☆287Updated 5 years ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆156Updated 9 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆422Updated 6 years ago
- Hypervisor-based debugger☆185Updated 3 years ago
- CHIPSEC module that exploits UEFI boot script table vulnerability☆132Updated 8 years ago
- UEFI bootkit☆236Updated 11 years ago
- Kernel Address Space Layout Randomization (KASLR) Recovery Software☆97Updated 7 years ago
- Fuzz and Detect "Use After Free" vulnerability in win32k.sys ( Heap based )☆132Updated 8 years ago
- Some scripts for IDA Pro to assist with reverse engineering EFI binaries☆71Updated 9 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆352Updated 4 years ago
- Intel Management Engine firmware loader plugin for IDA☆91Updated 7 years ago
- ☆99Updated 5 months ago
- Loading unsigned code into kernel in Windows 10 (64) with help of VMware Workstation Pro/Player design flaw☆136Updated 7 years ago
- A tool for UEFI firmware reverse engineering☆330Updated last year
- Conference slides and White-papers☆356Updated 4 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆263Updated 7 years ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆178Updated 4 years ago
- ☆116Updated 3 years ago
- PEDA-like debugger UI for WinDbg☆201Updated 7 months ago
- System Management RAM analysis tool☆72Updated 3 months ago
- IDA Sploiter is a plugin for Hex-Ray's IDA Pro disassembler designed to enhance IDA's capabilities as an exploit development and vulnerab…☆180Updated 5 years ago
- Data Visualization Plugin for IDA Pro☆287Updated last year
- Hypervisor-Level Debugger based on Radare2 / LibVMI, using VMI IO and debug plugins☆133Updated 5 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆159Updated 7 years ago
- Arbitrary SMM code execution exploit for industry-wide 0day vulnerability in AMI Aptio based firmwares☆64Updated 8 years ago
- TDL4 style rootkit to spoof read/write requests to master boot record☆129Updated 6 years ago
- A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3☆297Updated 5 years ago