badramattack / badramLinks
☆62Updated 9 months ago
Alternatives and similar repositories for badram
Users that are interested in badram are comparing it to the libraries listed below
Sorting:
- Artifact of "Indirector: High-Precision Branch Target Injection Attacks Exploiting the Indirect Branch Predictor" [USENIX Security 2024]☆64Updated last year
- ☆42Updated 2 years ago
- Ghidra Processor Module to disassemble and decompile the x86 Intel Atom microcode☆86Updated 2 years ago
- InSpectre Gadget: in-depth inspection and exploitability analysis of Spectre disclosure gadgets☆58Updated last month
- Proof-of-concept implementation for the paper "Efficient and Generic Microarchitectural Hash-Function Recovery" (IEEE S&P 2024)☆30Updated 2 years ago
- Full-VM taint analysis with Xen, Intel(R) Processor Trace and Triton.☆41Updated 2 years ago
- A small library to modify all page-table levels of all processes from user space for x86_64 and ARMv8.☆277Updated 8 months ago
- Intel Hardware Trace Library - Kernel Space Componment☆78Updated 2 months ago
- Arbitrary Speculative Code Execution with Return Instructions☆175Updated last year
- Proof-of-concept for the GhostWrite CPU bug.☆116Updated last year
- A migration for the page table entry based side-channel attack agains SGX enclaves.☆19Updated 10 months ago
- A simple hypervisor demonstrating the use of the Intel VT-rp (redirect protection) technology.☆111Updated last year
- ☆76Updated last year
- Spectre based on Linear Address Masking☆67Updated 2 years ago
- ☆16Updated last year
- Pathfinder: High-Resolution Control-Flow Attacks Exploiting the Conditional Branch Predictor☆21Updated last year
- Triton-based DSE library with loading and exploration capabilities (and more!)☆134Updated last week
- Materials for my DMA attacks talk and a collection of related links☆62Updated last year
- This repository contains exploit and reverse-engineering source code regarding the Spectre-BHB/Branch History Injection vulnerability☆118Updated 3 years ago
- Linux kernel branches for confidential compute research☆20Updated 8 months ago
- ☆30Updated last year
- The SAILR paper's evaluation pipline for measuring the quality of decompilation☆117Updated last year
- Breaking Confidential VMs with Malicious Interrupts (USENIX Security 2024)☆34Updated last year
- Simple AMD-V (SVM) Virtualization Extensions Demo☆20Updated 8 years ago
- LLVM Without The ROP Gadgets!☆26Updated last year
- How to use LLVM passes☆36Updated 3 years ago
- Symbolic execution for RISC-V machine code based on the formal LibRISCV ISA model☆54Updated 6 months ago
- BinRec: Dynamic Binary Lifting and Recompilation☆145Updated 2 years ago
- Constantine is a compiler-based system to automatically harden programs against microarchitectural side channels☆82Updated last month
- Framework for in-VM test execution and monitoring, inspired by Sandsifter☆12Updated 3 months ago