chrysh / riscv_exploitationLinks
Collection of RISC-V exploits
☆32Updated 6 years ago
Alternatives and similar repositories for riscv_exploitation
Users that are interested in riscv_exploitation are comparing it to the libraries listed below
Sorting:
- Alphanumeric+1 shellcoding tools for RISC-V☆37Updated 6 years ago
- LKRG bypass methods☆73Updated 5 years ago
- (Linux Kernel) Stack Monitoring Tool☆48Updated 3 years ago
- As near as possible to bare metal☆48Updated last week
- ASLREKT is a proof of concept for an unfixed generic local ASLR bypass in Linux.☆26Updated 5 years ago
- MASCAB: a Micro-Architectural Side-Channel Attack Bibliography☆41Updated 7 years ago
- Ledger Donjon CTF 2020☆17Updated 4 years ago
- Vagrant setup for building a machine for CTF/exploit development☆21Updated 6 years ago
- Nemesis: Studying microarchitectural timing leaks in rudimentary CPU interrupt logic☆90Updated 4 years ago
- CPU Adventure 2 challenge from the Dragon CTF 2019☆16Updated 7 months ago
- QEmu backend for avatar²☆21Updated 8 months ago
- A semi-demi-working proof of concept for a mix of spectre and meltdown vulnerabilities☆128Updated 7 years ago
- Stuff from CTF contests☆39Updated 6 years ago
- A bare-metal x86 instruction set fuzzer a la Sandsifter☆71Updated last year
- Linux kernel JIT spray for SMEP / KERNEXEC bypass☆55Updated 13 years ago
- Proof-of-concept code for the SMoTherSpectre exploit.☆76Updated 6 years ago
- ☆37Updated 4 years ago
- Detecting Spectre vulnerabilities using symbolic execution, built on angr (github.com/angr/angr)☆76Updated 3 years ago
- relros.c applies RELRO to static binaries, and static_to_dyn.c applies ASLR to static binaries.☆34Updated 7 years ago
- Low Pin Count (LPC) Analyzer for Saleae Logic☆17Updated last year
- Launch radare2 like a boss from pwntools in tmux☆23Updated 6 years ago
- Brute forcing scripts for bad CTF problems☆47Updated 5 years ago
- IPC scripts for access to Intel CRBUS☆120Updated 4 years ago
- Kernel Test Framework☆149Updated 3 weeks ago
- Notes on QEMU and Debian MIPS (big-endian)☆45Updated 7 years ago
- experimentation/code from Tanguy Dubroca (summer 2019)☆28Updated 6 years ago
- Ghidra loader module for the Mobicore trustlet and driver binaries☆27Updated 6 years ago
- L1TF (Foreshadow) VM guest to host memory read PoC☆113Updated 7 years ago
- A code skeleton of Samsung's Shannon S5000 baseband modem.☆47Updated 5 years ago
- a tool designed to help perform and visualize trace-driven cache attacks against software in the secure world of TrustZone-enabled ARMv8 …☆81Updated 6 years ago