IOActive / I-know-where-your-page-lives
I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016
☆161Updated 8 years ago
Alternatives and similar repositories for I-know-where-your-page-lives:
Users that are interested in I-know-where-your-page-lives are comparing it to the libraries listed below
- Old mitigation-bounty code that was applicable to edge before it use webkit/chrome☆86Updated 8 years ago
- Fuzz and Detect "Use After Free" vulnerability in win32k.sys ( Heap based )☆132Updated 9 years ago
- windows kernel vulnerability found by me☆91Updated 7 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆263Updated 7 years ago
- Content from presentation at BHUSA 2017☆180Updated 7 years ago
- Some example source code for fixed IE11 sandbox escapes.☆139Updated 10 years ago
- WinHeap Explorer repository.☆119Updated 6 years ago
- Small tool for generating ropchains using unicorn and z3☆197Updated 6 years ago
- Kernel Address Space Layout Randomization (KASLR) Recovery Software☆98Updated 8 years ago
- An open source, multi-architecture ROP compiler written in python☆161Updated 7 years ago
- Collection of VC++ example applications to demonstrate Win10 userland heap behavior (BEA & FEA)☆84Updated 8 years ago
- Proof-of-Concept exploit for Edge bugs (CVE-2016-7200 & CVE-2016-7201)☆138Updated 8 years ago
- kernel exploitation helper class☆76Updated 8 years ago
- Exploits for CVE-2017-6008, a kernel pool buffer overflow leading to privilege escalation.☆116Updated 3 months ago
- A clone (of the basic core) of AFL fuzzer☆74Updated 9 years ago
- Using WinDBG to tap into JavaScript and help with deobfuscation and browser exploit detection☆81Updated 7 years ago
- GUI tool to create ROP chains using the ropper API☆156Updated 6 years ago
- Attacking the Core associated source files☆87Updated 7 years ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆116Updated 6 years ago
- Enhanced Meta File Fuzzer based on Peach Fuzzing Framework☆71Updated 8 years ago
- Hardcore corruption of my execve() vulnerability in WSL☆214Updated 7 years ago
- Implementation of the SMM rootkit "The Watcher"☆124Updated 2 years ago
- my public code☆166Updated 8 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆236Updated 8 years ago
- ☆91Updated 8 years ago
- Xenpwn is a toolkit for memory access tracing using hardware-assisted virtualization☆144Updated 8 years ago
- Use ltrace with pwnlib.tubes.process instances, useful for heap exploitation. Pwntools rocks!☆52Updated 6 years ago
- Local Kernel Debugger (LKD) is a python wrapper around dbgengine.dll☆92Updated 8 years ago
- Synesthesia, implemented as Yices scripts☆93Updated 7 years ago
- Download all of Microsoft's security updates and symbols☆42Updated 8 years ago