corelan / win10_heap
Collection of VC++ example applications to demonstrate Win10 userland heap behavior (BEA & FEA)
☆84Updated 8 years ago
Alternatives and similar repositories for win10_heap:
Users that are interested in win10_heap are comparing it to the libraries listed below
- Fuzz and Detect "Use After Free" vulnerability in win32k.sys ( Heap based )☆132Updated 9 years ago
- Simple library to spray the Windows Kernel Pool☆107Updated 5 years ago
- elgoog/searchme challenge from 34C3 CTF / WCTF 2018: sources & exploit☆67Updated 6 years ago
- PEDA-like debugger UI for WinDbg☆202Updated 11 months ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆116Updated 6 years ago
- Some example source code for fixed IE11 sandbox escapes.☆140Updated 10 years ago
- Old mitigation-bounty code that was applicable to edge before it use webkit/chrome☆87Updated 8 years ago
- kernel pool windbg extension☆80Updated 9 years ago
- Use ltrace with pwnlib.tubes.process instances, useful for heap exploitation. Pwntools rocks!☆52Updated 6 years ago
- ☆100Updated 6 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆163Updated 8 years ago
- A Fuzzer for Windows NDIS Drivers OID Handlers☆93Updated 3 years ago
- Windows NT ioctl bruteforcer and modular fuzzer☆121Updated 6 years ago
- WinHeap Explorer repository.☆119Updated 6 years ago
- Content from presentation at BHUSA 2017☆180Updated 7 years ago
- Exploits for CVE-2017-6008, a kernel pool buffer overflow leading to privilege escalation.☆116Updated 4 months ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆159Updated 9 years ago
- DC25 5A1F - Demystifying Windows Kernel Exploitation by Abusing GDI Objects☆145Updated 7 years ago
- ☆134Updated 5 years ago
- HackSys Extreme Vulnerable Driver - Windows 10 x64 StackOverflow Exploit with SMEP Bypass☆61Updated 7 years ago
- ANBU (Automatic New Binary Unpacker) a tool for me to learn about PIN and about algorithms for generic unpacking.☆89Updated 5 years ago
- kernel exploitation helper class☆76Updated 8 years ago
- A Python tool to generate ROP chains☆60Updated last month
- Any useful windbg plugins I've written.☆116Updated 6 years ago
- A DBI tool to discover heap memory related bugs☆125Updated 6 years ago
- Scripts for disassembling VBScript p-code in the memory to aid in exploits analysis☆84Updated 2 years ago
- A gadget finder and a ROP-Chainer tool for x86 platforms☆93Updated 3 years ago
- Runtime Prevention of Return-Oriented Programming Attacks☆82Updated 9 years ago
- Windows 10 RS2/RS3 exploitation primitives based on the OffensiveCon 2018 talk☆55Updated 7 years ago
- ☆89Updated 5 years ago