This repo contains EXPs about Vulnerable Windows Driver
☆48May 22, 2024Updated last year
Alternatives and similar repositories for Win-Driver-EXP
Users that are interested in Win-Driver-EXP are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆92Aug 16, 2025Updated 8 months ago
- DSE & PG bypass via BYOVD attack☆78Jul 12, 2025Updated 9 months ago
- AIDA64DRIVER Elevation of Privilege Vulnerability☆17Oct 25, 2024Updated last year
- ☆25Jan 6, 2025Updated last year
- ☆147Mar 29, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Reimplementation of the KExecDD DSE bypass technique.☆61Sep 7, 2024Updated last year
- WinDbg plugin to trace module transitions from a debugged driver.☆52Dec 22, 2025Updated 4 months ago
- using wnbios64.sys for arbitrary r/w☆15Oct 12, 2025Updated 6 months ago
- Windows x64 DLL/Driver manual map injection on a non-present PML4E using physical memory read/writes, direct page table manipulation and …☆91Sep 28, 2025Updated 7 months ago
- A serie of exploits targeting eneio64.sys - Turning Physical Memory R/W into Virtual Memory R/W☆122Oct 19, 2025Updated 6 months ago
- ManageEngine ADManager Command Injection☆11Oct 2, 2023Updated 2 years ago
- ☆42Jun 23, 2024Updated last year
- ☆196Jul 29, 2024Updated last year
- POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY☆233Apr 12, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- IoctlHunter is a command-line tool designed to simplify the analysis of IOCTL calls made by userland software targeting Windows drivers.☆112Jan 17, 2024Updated 2 years ago
- Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation☆131Mar 22, 2024Updated 2 years ago
- NSecSoftBYOVD POC☆58Feb 12, 2026Updated 2 months ago
- ☆16Oct 31, 2021Updated 4 years ago
- ☆66May 25, 2023Updated 2 years ago
- An example code of CiGetCertPublisherName☆16Mar 24, 2022Updated 4 years ago
- page table manipulation to gain physical r/w☆44May 7, 2024Updated last year
- Vulnerable driver research tool, result and exploit PoCs☆235Nov 1, 2023Updated 2 years ago
- ☆63May 31, 2024Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆12Jul 12, 2022Updated 3 years ago
- ☆91Jul 18, 2023Updated 2 years ago
- Fuzzing harnesses, corpora, scripts, and target-specific notes for fuzzing IrfanView☆25May 20, 2021Updated 4 years ago
- Exploitable drivers, you know what I mean☆153Nov 16, 2025Updated 5 months ago
- Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book☆119Jun 30, 2024Updated last year
- 一个通过提取 fuzz crash 触发的调用堆栈 hash, 来动态分类的小工具☆15Nov 24, 2021Updated 4 years ago
- ☆61Aug 21, 2023Updated 2 years ago
- Experiment to use sections as User/Kernelmode comm vector☆22Apr 7, 2023Updated 3 years ago
- Leveraging TPM2 TCG Logs (Measured Boot) to Detect UEFI Drivers and Pre-Boot Applications☆21Mar 28, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A method to Disable DSE using .data ptr hooks☆41Feb 1, 2024Updated 2 years ago
- LPE exploit for CVE-2023-36802☆167Oct 10, 2023Updated 2 years ago
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆455Dec 7, 2025Updated 4 months ago
- ☆13Apr 13, 2023Updated 3 years ago
- anti-ransomware file-system filter☆70Sep 3, 2024Updated last year
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆269Mar 16, 2026Updated last month
- Windows AppLocker Driver (appid.sys) LPE☆77Jul 29, 2024Updated last year