bcoles / kasldLinks
Kernel Address Space Layout Derandomization (KASLD) - A collection of various techniques to infer the Linux kernel base virtual address as an unprivileged local user, for the purpose of bypassing Kernel Address Space Layout Randomization (KASLR).
☆457Updated last year
Alternatives and similar repositories for kasld
Users that are interested in kasld are comparing it to the libraries listed below
Sorting:
- Kernel development & exploitation practice environment.☆235Updated 2 years ago
- Kernel Fuzzer for Xen Project (KF/x) - Hypervisor-based fuzzing using Xen VM forking, VMI & AFL☆473Updated last year
- Linux kernel exploitation experiments☆344Updated last month
- A fuzzer for full VM kernel/driver targets☆745Updated 2 months ago
- ☆166Updated 8 months ago
- A blazing fast™ multithreaded ROP Gadget finder. ropper / ropgadget alternative (currently x86 only)☆530Updated 3 months ago
- helps visualize heap operations for pwn and debugging☆322Updated 2 years ago
- repository for kernel exploit practice☆409Updated 5 years ago
- radius2 is a fast binary emulation and symbolic execution framework using radare2☆616Updated 9 months ago
- ☆328Updated last year
- ☆185Updated 7 months ago
- This Repository aims at giving a basic idea about Kernel Exploitation.☆522Updated last year
- ROPium is a tool that helps you building ROP exploits by finding and chaining gadgets together☆387Updated 2 years ago
- Use angr in Ghidra☆609Updated last year
- Winnie makes fuzzing Windows applications easy☆564Updated 2 years ago
- kernel-pwn and writeup collection☆663Updated 2 years ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆432Updated 5 months ago
- ☆442Updated last year
- GEF - GDB Enhanced Features for exploit devs & reversers☆537Updated this week
- Windows Pwnable Study☆377Updated 3 months ago
- Vulnerability research notes for VirtualBox and QEMU. Contains debug environment setup notes, a PoC template, exploit primitive notes, an…☆192Updated last year
- AFL binary instrumentation☆300Updated 8 months ago
- Split information output of pwndbg output☆206Updated last year
- A collection of pwn/CTF related utilities for Ghidra☆690Updated last year
- A Binary Ninja plugin for vulnerability research.☆296Updated last year
- The fastest Intel-PT decoder for fuzzing☆375Updated last year
- Snapshot-based coverage-guided windows kernel fuzzer☆320Updated 3 years ago
- Injects code into ELF executables post-build☆236Updated last year
- A plugin to introduce interactive symbols into your debugger from your decompiler☆699Updated 5 months ago
- ☆715Updated 2 weeks ago