bitdefender / lvi-lfb-attack-poc
This repository contains the sources and documentation for the LVI-LFB Control Flow Hijacking attack PoC (CVE-2020-0551)
☆25Updated 4 years ago
Alternatives and similar repositories for lvi-lfb-attack-poc:
Users that are interested in lvi-lfb-attack-poc are comparing it to the libraries listed below
- Working Set Page Cache side-channel IPC PoC☆66Updated 6 years ago
- Python based angr plug in for IDA Pro.☆34Updated 6 years ago
- Proof-of-concept code for the SMoTherSpectre exploit.☆74Updated 5 years ago
- This repository contains the sources and documentation for the SWAPGS attack PoC (CVE-2019-1125)☆41Updated 5 years ago
- A framework for static analysis of ROP exploits and programs☆40Updated 5 years ago
- winAFL patch to enable network-based apps fuzzing☆37Updated 6 years ago
- Tool to extract the kallsyms (System.map) from a memory dump☆25Updated last year
- Intel PT log analyzer With Parallel Processing And Basic Block Offset Caching Support☆69Updated last year
- ☆35Updated 3 years ago
- Security Evaluation of Dynamic Binary Instrumentation Engines☆78Updated 6 years ago
- This repository contains several tools to perform Prefetch Side-Channel Attacks☆58Updated 7 years ago
- ☆87Updated 9 years ago
- Implementation of our S&P16 paper: A Tough Call: Mitigating Advanced Code-Reuse Attacks☆46Updated 7 years ago
- Towards Automatically Generating a Sound and Complete Dataset for Evaluating Static Analysis Tools☆14Updated 5 years ago
- PoC for the taint-based ROP approach☆13Updated last year
- Dynamic Control Flow Recovery☆25Updated 6 years ago
- Simulate afl-fuzz☆16Updated 5 years ago
- Final project for the M.Sc. in Engineering in Computer Science at Università degli Studi di Roma "La Sapienza" (A.Y. 2016/2017).☆35Updated 7 years ago
- Course sample for SMT-Based Binary Program Analysis training class☆31Updated 6 years ago
- An AFL scaling benchmarking tool☆18Updated 4 years ago
- x86 Dynamic Binary Translator Library☆34Updated 4 years ago
- KLEESpectre is a symbolic execution engine with speculation semantic and cache modelling☆33Updated 4 years ago
- Use angr inside the radare2 debugger. Create an angr state from the current debugger state.☆34Updated 5 years ago
- A Fuzzer for Windows NDIS Drivers OID Handlers☆93Updated 3 years ago
- x86 bootloader emulation with Miasm (case of NotPetya)☆40Updated 5 years ago
- Writeups of CTF challenges I do☆13Updated 5 years ago
- IDA+Triton plugin in order to extract opaque predicates using a Forward-Bounded DSE. Example with X-Tunnel.☆52Updated 5 years ago
- A tool to add simple inline patches to a binary to rearrange its stack frames, and other things!☆45Updated 2 years ago
- Control-Flow Integrity implementation for the Linux Kernel 3.19☆20Updated 4 years ago
- kMVX: Detecting Kernel Information Leaks with Multi-variant Execution☆21Updated 5 years ago