HackingThings / SignedUEFIShellLinks
Information about a signed UEFI Shell that can be used when Secure Boot is enabled.
☆80Updated 4 years ago
Alternatives and similar repositories for SignedUEFIShell
Users that are interested in SignedUEFIShell are comparing it to the libraries listed below
Sorting:
- One Bootloader to Load Them All - Research materials, Code , Etc.☆52Updated 2 years ago
- ☆162Updated 3 years ago
- ☆146Updated 2 years ago
- The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303…☆142Updated 4 years ago
- The simple UEFI application to create a Windows Platform Binary Table (WPBT) from the UEFI shell.☆116Updated 3 years ago
- Take back control of Windows Code Integrity, no exploits or patching required! Requires that you control your own Platform Key (PK).☆49Updated 2 years ago
- Exploit POC for CVE-2024-36877☆47Updated 11 months ago
- An x64dbg plugin which marks XFG call signatures as data☆77Updated 2 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆252Updated 2 years ago
- Different tools for Microsoft Hyper-V researching☆60Updated 3 weeks ago
- Exploiting ring0 memcpy-like functionality to disable Driver Signing Enforcement (DSE)☆21Updated 5 years ago
- SPI flash read MitM attack PoC☆38Updated 3 years ago
- MalUnpack companion driver☆98Updated last year
- A Python script to download PDB files associated with a Portable Executable (PE)☆124Updated 5 months ago
- ☆71Updated 2 years ago
- Windows kernel PDB data parsed into YAML☆38Updated 8 months ago
- Abusing exceptions for code execution.☆111Updated 2 years ago
- Research on obfuscated licensing APIs / CLIP service in the Windows kernel☆118Updated 2 years ago
- Enumerate user mode shared memory mappings on Windows.☆122Updated 4 years ago
- uefi diskless persistence technique + OVMF secureboot bypass☆86Updated last year
- IOCTLpus can be used to make DeviceIoControl requests with arbitrary inputs (with functionality somewhat similar to Burp Repeater).☆92Updated 3 years ago
- Ghidra data type archive for Windows driver analysis☆26Updated 9 months ago
- vulnerability in zam64.sys, zam32.sys allowing ring 0 code execution. CVE-2021-31727 and CVE-2021-31728 public reference.☆91Updated 4 years ago
- Breaking Secure Boot with SMM☆41Updated 3 years ago
- Winbindex bot to pull in binaries for specific releases☆47Updated last year
- ☆23Updated 3 years ago
- Windows Kernel Programming Experiments☆80Updated 2 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆35Updated 4 years ago
- A novel technique to communicate between threads using the standard ETHREAD structure☆113Updated 4 years ago
- ☆45Updated 2 years ago