IOActive / I-know-where-your-page-lives
I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016
☆163Updated 8 years ago
Alternatives and similar repositories for I-know-where-your-page-lives:
Users that are interested in I-know-where-your-page-lives are comparing it to the libraries listed below
- Old mitigation-bounty code that was applicable to edge before it use webkit/chrome☆87Updated 8 years ago
- Fuzz and Detect "Use After Free" vulnerability in win32k.sys ( Heap based )☆132Updated 9 years ago
- windows kernel vulnerability found by me☆91Updated 7 years ago
- Some example source code for fixed IE11 sandbox escapes.☆140Updated 10 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆263Updated 7 years ago
- Kernel Address Space Layout Randomization (KASLR) Recovery Software☆98Updated 8 years ago
- Hardcore corruption of my execve() vulnerability in WSL☆214Updated 7 years ago
- Content from presentation at BHUSA 2017☆180Updated 7 years ago
- C++-based shellcode builder☆112Updated 4 years ago
- WinHeap Explorer repository.☆119Updated 6 years ago
- An open source, multi-architecture ROP compiler written in python☆161Updated 7 years ago
- ☆91Updated 8 years ago
- my public code☆166Updated 8 years ago
- kernel exploitation helper class☆76Updated 8 years ago
- Proof-of-Concept exploit for Edge bugs (CVE-2016-7200 & CVE-2016-7201)☆138Updated 8 years ago
- Loading unsigned code into kernel in Windows 10 (64) with help of VMware Workstation Pro/Player design flaw☆135Updated 7 years ago
- Collection of VC++ example applications to demonstrate Win10 userland heap behavior (BEA & FEA)☆84Updated 8 years ago
- ROPMEMU is a framework to analyze, dissect and decompile complex code-reuse attacks.☆284Updated 8 years ago
- Small tool for generating ropchains using unicorn and z3☆197Updated 7 years ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆116Updated 6 years ago
- Local Kernel Debugger (LKD) is a python wrapper around dbgengine.dll☆92Updated 8 years ago
- Download all of Microsoft's security updates and symbols☆42Updated 8 years ago
- Using WinDBG to tap into JavaScript and help with deobfuscation and browser exploit detection☆81Updated 8 years ago
- GUI tool to create ROP chains using the ropper API☆156Updated 6 years ago
- Synesthesia, implemented as Yices scripts☆93Updated 7 years ago
- grap: define and match graph patterns within binaries☆170Updated 4 years ago
- Implementation of the SMM rootkit "The Watcher"☆124Updated 3 years ago
- Exploit Win10Pcap Driver to enable some Privilege in our process token ( local Privilege escalation )☆60Updated 9 years ago
- Attacking the Core associated source files☆87Updated 7 years ago
- Use ltrace with pwnlib.tubes.process instances, useful for heap exploitation. Pwntools rocks!☆52Updated 6 years ago