bcoles / kasldLinks
Kernel Address Space Layout Derandomization (KASLD) - A collection of various techniques to infer the Linux kernel base virtual address as an unprivileged local user, for the purpose of bypassing Kernel Address Space Layout Randomization (KASLR).
☆462Updated last year
Alternatives and similar repositories for kasld
Users that are interested in kasld are comparing it to the libraries listed below
Sorting:
- Kernel Fuzzer for Xen Project (KF/x) - Hypervisor-based fuzzing using Xen VM forking, VMI & AFL☆473Updated last year
- Kernel development & exploitation practice environment.☆241Updated 2 years ago
- Linux kernel exploitation experiments☆378Updated this week
- A fuzzer for full VM kernel/driver targets☆758Updated 4 months ago
- ☆168Updated 10 months ago
- helps visualize heap operations for pwn and debugging☆327Updated 2 years ago
- A blazing fast™ multithreaded ROP Gadget finder. ropper / ropgadget alternative (currently x86 only)☆533Updated 5 months ago
- ☆189Updated 9 months ago
- repository for kernel exploit practice☆411Updated 6 years ago
- ☆442Updated last year
- radius2 is a fast binary emulation and symbolic execution framework using radare2☆622Updated 11 months ago
- ROPium is a tool that helps you building ROP exploits by finding and chaining gadgets together☆388Updated 2 years ago
- Winnie makes fuzzing Windows applications easy☆565Updated 3 years ago
- ☆329Updated last year
- kernel-pwn and writeup collection☆676Updated 2 years ago
- Windows Pwnable Study☆390Updated 5 months ago
- This Repository aims at giving a basic idea about Kernel Exploitation.☆521Updated last year
- Use angr in Ghidra☆612Updated last year
- AFL binary instrumentation☆301Updated 10 months ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆436Updated 7 months ago
- Vulnerability research notes for VirtualBox and QEMU. Contains debug environment setup notes, a PoC template, exploit primitive notes, an…☆194Updated last year
- GEF - GDB Enhanced Features for exploit devs & reversers☆578Updated this week
- The fastest Intel-PT decoder for fuzzing☆376Updated last year
- A de-socketing library for fuzzing.☆161Updated 3 months ago
- ☆262Updated 2 years ago
- Snapshot-based coverage-guided windows kernel fuzzer☆317Updated 3 years ago
- Split information output of pwndbg output☆209Updated last year
- A Binary Ninja plugin for vulnerability research.☆297Updated last year
- Code and exercises for a workshop on z3 and angr☆233Updated 4 years ago
- An educational Bochs-based snapshot fuzzer project☆221Updated last month