HackingThings / SignedUEFIShell
Information about a signed UEFI Shell that can be used when Secure Boot is enabled.
☆79Updated 3 years ago
Alternatives and similar repositories for SignedUEFIShell:
Users that are interested in SignedUEFIShell are comparing it to the libraries listed below
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆79Updated 4 years ago
- One Bootloader to Load Them All - Research materials, Code , Etc.☆51Updated 2 years ago
- C# Utilities for Windows Notification Facility☆130Updated 3 months ago
- The simple UEFI application to create a Windows Platform Binary Table (WPBT) from the UEFI shell.☆103Updated 3 years ago
- ☆21Updated 3 years ago
- IOCTLpus can be used to make DeviceIoControl requests with arbitrary inputs (with functionality somewhat similar to Burp Repeater).☆88Updated 3 years ago
- A novel technique to communicate between threads using the standard ETHREAD structure☆110Updated 4 years ago
- ☆70Updated 2 years ago
- ☆142Updated last year
- A UEFI extraction tool☆18Updated 4 months ago
- A Python script to download PDB files associated with a Portable Executable (PE)☆119Updated 2 weeks ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆244Updated 2 years ago
- Minifilter Callback Patching Proof-of-Concept☆65Updated 2 years ago
- ☆158Updated 3 years ago
- The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303…☆136Updated 3 years ago
- ☆92Updated 8 months ago
- Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)☆97Updated last year
- Take back control of Windows Code Integrity, no exploits or patching required! Requires that you control your own Platform Key (PK).☆40Updated 2 years ago
- Windows kernel PDB data parsed into YAML☆34Updated 3 months ago
- Enabled / Disable LSA Protection via BYOVD☆65Updated 3 years ago
- Command like tool to print mitigation flags for running processes in a memory dump☆46Updated 4 years ago
- Helper idapython code for reversing kmdf drivers☆72Updated 2 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆34Updated 3 years ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆104Updated 4 years ago
- ☆67Updated 2 years ago
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆150Updated last week
- SMM UEFI module and client for UMD privilege escalation☆33Updated last year
- Michelangelo REanimator bootkit and REcon 2023 talk slides/materials☆28Updated last year
- call gates as stable comunication channel for NT x86 and Linux x86_64☆31Updated last year
- SPI flash read MitM attack PoC☆37Updated 2 years ago