This repo contains EXPs about Vulnerable Windows Driver
☆48May 22, 2024Updated 2 years ago
Alternatives and similar repositories for Win-Driver-EXP
Users that are interested in Win-Driver-EXP are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆27Jan 6, 2025Updated last year
- ☆92Aug 16, 2025Updated 11 months ago
- Proof-of-Concept exploit for CVE-2026-32223☆21Apr 17, 2026Updated 3 months ago
- AIDA64DRIVER Elevation of Privilege Vulnerability☆17Oct 25, 2024Updated last year
- DSE & PG bypass via BYOVD attack☆82Jul 12, 2025Updated last year
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- ☆147Mar 29, 2025Updated last year
- Reimplementation of the KExecDD DSE bypass technique.☆62Sep 7, 2024Updated last year
- using wnbios64.sys for arbitrary r/w☆14Jun 12, 2026Updated last month
- CVE-2025-7771: Arbitrary physical memory and I/O port read/write via ThrottleStop driver☆18Sep 5, 2025Updated 11 months ago
- ManageEngine ADManager Command Injection☆11Oct 2, 2023Updated 2 years ago
- ☆40Jun 23, 2024Updated 2 years ago
- ☆203Jul 29, 2024Updated 2 years ago
- A serie of exploits targeting eneio64.sys - Turning Physical Memory R/W into Virtual Memory R/W☆124Oct 19, 2025Updated 9 months ago
- POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY☆232Apr 12, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- IoctlHunter is a command-line tool designed to simplify the analysis of IOCTL calls made by userland software targeting Windows drivers.☆114Jan 17, 2024Updated 2 years ago
- Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation☆129Mar 22, 2024Updated 2 years ago
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆469Jun 18, 2026Updated last month
- Windows AppLocker Driver (appid.sys) LPE☆80Jul 29, 2024Updated 2 years ago
- Exploit vulnerabilities in NeacSafe64.sys to achieve privilege escalation and kernel-mode shellcode execution☆73Jul 1, 2025Updated last year
- Decrypting and intercepting encrypted imports of Vanguards Kernel Driver☆37Feb 13, 2024Updated 2 years ago
- Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods…☆197Apr 27, 2026Updated 3 months ago
- ☆66May 25, 2023Updated 3 years ago
- ☆62May 31, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆12Jul 12, 2022Updated 4 years ago
- Exploitable drivers, you know what I mean☆154Nov 16, 2025Updated 8 months ago
- An example code of CiGetCertPublisherName☆15Mar 24, 2022Updated 4 years ago
- page table manipulation to gain physical r/w☆43Jun 12, 2026Updated last month
- Vulnerable driver research tool, result and exploit PoCs☆243Nov 1, 2023Updated 2 years ago
- NSecSoftBYOVD POC☆62Feb 12, 2026Updated 5 months ago
- Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book☆119Jun 30, 2024Updated 2 years ago
- Fuzzing harnesses, corpora, scripts, and target-specific notes for fuzzing IrfanView☆26May 20, 2021Updated 5 years ago
- ☆62Aug 21, 2023Updated 2 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- ☆91Jul 18, 2023Updated 3 years ago
- This repo contains PoCs for vulnerable Windows drivers.☆153Dec 20, 2025Updated 7 months ago
- Experiment to use sections as User/Kernelmode comm vector☆22Apr 7, 2023Updated 3 years ago
- LPE exploit for CVE-2023-36802☆165Oct 10, 2023Updated 2 years ago
- Windows KASLR bypass using prefetch side-channel☆210Apr 26, 2024Updated 2 years ago
- ☆13Apr 13, 2023Updated 3 years ago
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆293Mar 16, 2026Updated 4 months ago