connormorley / OuterHaven-UEFI-exploitation-and-detectionLinks
A standalone python script leveraging ntdll for UEFI variable enumeration. This uses elements from the "chipsec" toolkit for formatting when extracting NVRAM buffer from the ntdll library function and underlying runtime service. This is working on Windows 7 - 10 in testing.
☆10Updated 2 years ago
Alternatives and similar repositories for OuterHaven-UEFI-exploitation-and-detection
Users that are interested in OuterHaven-UEFI-exploitation-and-detection are comparing it to the libraries listed below
Sorting:
- Exploits pack for the Windows Kernel mode driver HackSysExtremeVulnerableDriver written for educational purposes.☆66Updated 4 years ago
- ☆11Updated 3 years ago
- Configure SPI flash write protection.☆24Updated 5 years ago
- Skeleton project for your own GRUB-based bootkit☆16Updated 5 years ago
- ☆13Updated 6 years ago
- Bluefrost Exploitation Challenge 2019 - Exploit and Writeup☆24Updated last year
- Will try to put here slides from now on when I give a talk☆24Updated 4 years ago
- PCILeech HP iLO4 Service☆23Updated 6 years ago
- Python interface for Binexport, the Bindiff export format☆17Updated 3 weeks ago
- Helper plugin for analyzing UEFI firmware☆89Updated last year
- SPI flash read MitM attack PoC☆39Updated 3 years ago
- One Bootloader to Load Them All - Research materials, Code , Etc.☆59Updated 3 years ago
- Read out-of-bounds PoC for miniupnpd <= v2.1☆21Updated 6 years ago
- findLoop - find possible encryption/decryption or compression/decompression code☆26Updated 6 years ago
- A wrapper for capstone for bearparser☆16Updated last month
- Rekall Memory Forensic Framework☆33Updated 6 years ago
- The Damn Vulnerable Router Firmware Project☆31Updated 7 years ago
- Linux-KVM with rVMI extensions☆22Updated 8 years ago
- Simple PoC for a bootkit written as a UEFI Option ROM Driver☆11Updated 3 years ago
- A repository with UEFI research stuff☆16Updated 2 years ago
- Repository of vulnerabilities disclosed by ESET☆29Updated 3 years ago
- Breaking Secure Boot with SMM☆41Updated 3 years ago
- A MBR Fuzzer☆30Updated last year
- PANDA-powered tracing engine for tenet☆11Updated 3 years ago
- ☆30Updated 2 months ago
- Poc for ELF64 runtime infection via GOT poisoning technique by elfmaster☆30Updated 5 years ago
- Ghidra loader module for the Mobicore trustlet and driver binaries☆27Updated 6 years ago
- PoC multi-layer protector for ELF32 x86 binaries☆11Updated 3 years ago
- "A Practical Recipe for Hardware Implants" presentation materials.☆14Updated 5 years ago
- ☆48Updated 5 years ago