This repo contains EXPs about Vulnerable Windows Driver
☆47May 22, 2024Updated last year
Alternatives and similar repositories for Win-Driver-EXP
Users that are interested in Win-Driver-EXP are comparing it to the libraries listed below
Sorting:
- ☆91Aug 16, 2025Updated 7 months ago
- DSE & PG bypass via BYOVD attack☆79Jul 12, 2025Updated 8 months ago
- AIDA64DRIVER Elevation of Privilege Vulnerability☆16Oct 25, 2024Updated last year
- ☆25Jan 6, 2025Updated last year
- ☆146Mar 29, 2025Updated 11 months ago
- Windows x64 DLL/Driver manual map injection on a non-present PML4E using physical memory read/writes, direct page table manipulation and …☆86Sep 28, 2025Updated 5 months ago
- Reimplementation of the KExecDD DSE bypass technique.☆59Sep 7, 2024Updated last year
- WinDbg plugin to trace module transitions from a debugged driver.☆47Dec 22, 2025Updated 3 months ago
- using wnbios64.sys for arbitrary r/w☆15Oct 12, 2025Updated 5 months ago
- A serie of exploits targeting eneio64.sys - Turning Physical Memory R/W into Virtual Memory R/W☆120Oct 19, 2025Updated 5 months ago
- ManageEngine ADManager Command Injection☆11Oct 2, 2023Updated 2 years ago
- ☆42Jun 23, 2024Updated last year
- ☆195Jul 29, 2024Updated last year
- POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY☆230Apr 12, 2025Updated 11 months ago
- IoctlHunter is a command-line tool designed to simplify the analysis of IOCTL calls made by userland software targeting Windows drivers.☆109Jan 17, 2024Updated 2 years ago
- Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation☆131Mar 22, 2024Updated 2 years ago
- NSecSoftBYOVD POC☆58Feb 12, 2026Updated last month
- ☆16Oct 31, 2021Updated 4 years ago
- ☆67May 25, 2023Updated 2 years ago
- An example code of CiGetCertPublisherName☆16Mar 24, 2022Updated 3 years ago
- page table manipulation to gain physical r/w☆44May 7, 2024Updated last year
- Vulnerable driver research tool, result and exploit PoCs☆233Nov 1, 2023Updated 2 years ago
- ☆91Jul 18, 2023Updated 2 years ago
- ☆12Jul 12, 2022Updated 3 years ago
- ☆63May 31, 2024Updated last year
- Fuzzing harnesses, corpora, scripts, and target-specific notes for fuzzing IrfanView☆25May 20, 2021Updated 4 years ago
- Exploitable drivers, you know what I mean☆152Nov 16, 2025Updated 4 months ago
- Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book☆119Jun 30, 2024Updated last year
- 一个通过提取 fuzz crash 触发的调用堆栈 hash, 来动态分类的小工具☆15Nov 24, 2021Updated 4 years ago
- ☆61Aug 21, 2023Updated 2 years ago
- Experiment to use sections as User/Kernelmode comm vector☆22Apr 7, 2023Updated 2 years ago
- Leveraging TPM2 TCG Logs (Measured Boot) to Detect UEFI Drivers and Pre-Boot Applications☆22Mar 28, 2025Updated 11 months ago
- A method to Disable DSE using .data ptr hooks☆40Feb 1, 2024Updated 2 years ago
- LPE exploit for CVE-2023-36802☆168Oct 10, 2023Updated 2 years ago
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆441Dec 7, 2025Updated 3 months ago
- ☆13Apr 13, 2023Updated 2 years ago
- anti-ransomware file-system filter☆69Sep 3, 2024Updated last year
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆255Oct 26, 2024Updated last year
- Windows AppLocker Driver (appid.sys) LPE☆76Jul 29, 2024Updated last year