Wack0 / bitlocker-attacks
A list of public attacks on BitLocker
☆280Updated 2 months ago
Alternatives and similar repositories for bitlocker-attacks:
Users that are interested in bitlocker-attacks are comparing it to the libraries listed below
- A repo for TPM sniffing greatness☆224Updated 5 months ago
- Nuke It From Orbit - remove AV/EDR with physical access☆258Updated 5 months ago
- Decrypt the bitlocker FVEK for a bitlocker encrypted drive.☆28Updated last month
- baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability☆325Updated last year
- ☆72Updated 3 years ago
- Damn Vulnerable UEFI☆274Updated 8 months ago
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆184Updated last year
- Wireshark RDP resources☆212Updated 2 months ago
- Memory-Dump-UEFI is a UEFI application for dumping the contents of RAM.☆152Updated last month
- A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.☆367Updated 3 months ago
- Bootkit sample for firmware attack☆248Updated 5 months ago
- A delicious, but malicious SSL-VPN server 🌮☆219Updated 5 months ago
- Python tool to check rootkits in Windows kernel☆195Updated 2 months ago
- ☆201Updated 6 months ago
- WMI virus, because funny☆280Updated 3 months ago
- The CIA's Marble Framework is designed to allow for flexible and easy-to-use obfuscation when developing tools.☆291Updated last year
- Volatility plugin to retrieve the Full Volume Encryption Key in memory. The FVEK can then be used with the help of Dislocker to mount the…☆47Updated 5 years ago
- A ProcessMonitor visualization application written in rust.☆178Updated last year
- Tools for decoding TPM SPI transaction and extracting the BitLocker key from them.☆300Updated 3 years ago
- This is a Ghidra script that calls OPENAI to give meaning to decompiled functions☆123Updated 9 months ago
- Web-based tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the …☆340Updated last week
- Unprotect is a collaborative platform dedicated to uncovering and documenting malware evasion techniques. We invite you to join us in thi…☆160Updated last month
- ☆571Updated last week
- Operating System Design Review: A systemic analysis of modern systems architecture☆312Updated 2 months ago
- A Saleae Analyzer for TPM traffic that only requires the LADD & LFRAME signals, no clock.☆137Updated last year
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆175Updated this week
- Linpmem is a linux memory acquisition tool☆82Updated 11 months ago
- Code and data artifacts for our paper: "faulTPM: Exposing AMD fTPMs’ Deepest Secrets"☆107Updated 2 years ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆165Updated last month
- A network technique that decloaks a VPN users traffic on a local network without disconnecting them from a VPN.☆132Updated last year