Nero22k / cve-2023-29360
Exploit for CVE-2023-29360 targeting MSKSSRV.SYS driver
☆143Updated last year
Related projects ⓘ
Alternatives and complementary repositories for cve-2023-29360
- LPE exploit for CVE-2023-36802☆159Updated last year
- ☆130Updated 10 months ago
- Windows LPE exploit for CVE-2022-37969☆130Updated last year
- Proof of Concept for manipulating the Kernel Callback Table in the Process Environment Block (PEB) to perform process injection and hijac…☆171Updated 3 weeks ago
- Activation cache poisoning to elevate from medium to high integrity (CVE-2024-6769)☆51Updated last month
- ☆118Updated 3 months ago
- Generic PE loader for fast prototyping evasion techniques☆185Updated 4 months ago
- Generating legitimate call stack frame along with indirect syscalls by abusing Vectored Exception Handling (VEH) to bypass User-Land EDR …☆194Updated 3 months ago
- Bypass LSA protection using the BYODLL technique☆146Updated 2 months ago
- TeamViewer User to Kernel Elevation of Privilege PoC. CVE-2024-7479 and CVE-2024-7481. ZDI-24-1289 and ZDI-24-1290. TV-2024-1006.☆120Updated last month
- A PoC implementation for dynamically masking call stacks with timers.☆250Updated last year
- ☆173Updated last year
- Windows LPE☆104Updated 5 months ago
- CVE-2024-30090 - LPE PoC☆93Updated last month
- A set of programs for analyzing common vulnerabilities in COM☆154Updated 2 months ago
- Proof of concept code for thread pool based process injection in Windows.☆105Updated this week
- Some POCs for my BYOVD research and find some vulnerable drivers☆126Updated 2 months ago
- Proof-of-Concept for CVE-2024-21345☆70Updated 6 months ago
- Implementing the ghostly hollowing PE injection technique using tampered syscalls.☆125Updated 5 months ago
- Exploitation of process killer drivers☆187Updated last year
- Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar☆118Updated 3 months ago
- Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation☆124Updated 7 months ago
- Huffman Coding in Shellcode Obfuscation & Dynamic Indirect Syscalls Loader☆85Updated 8 months ago
- LPE exploit for CVE-2023-36802☆22Updated last year
- Exploitation of echo_driver.sys☆167Updated last year
- A Dropper POC with a focus on aiding in EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (…☆165Updated last year
- Abusing Windows fork API and OneDrive.exe process to inject the malicious shellcode without allocating new RWX memory region.☆243Updated 5 months ago
- bring your own vulnerable driver☆81Updated last year