exploits-forsale / prefetch-toolLinks
Windows KASLR bypass using prefetch side-channel
☆172Updated last year
Alternatives and similar repositories for prefetch-tool
Users that are interested in prefetch-tool are comparing it to the libraries listed below
Sorting:
- ☆149Updated last year
- Exploit targeting NT kernel in 24H2 Windows Insider Preview☆147Updated last year
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆246Updated 3 years ago
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆167Updated 3 months ago
- Report and exploit of CVE-2023-36427☆88Updated 2 years ago
- Repo with different exploits & PoCs☆64Updated 7 months ago
- CVE-2025-50168 Exploit PoC — Pwn2Own Berlin 2025 - LPE(Windows 11) winning bug.☆132Updated last month
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆125Updated 2 months ago
- This repo contains EXPs about Vulnerable Windows Driver☆46Updated last year
- ☆188Updated last year
- ☆85Updated 4 months ago
- Remove WPP calls from hexrays decompiled code☆54Updated 8 months ago
- ☆156Updated last month
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆156Updated last year
- Static binary instrumentation for windows kernel drivers, to use with winafl☆78Updated 10 months ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆158Updated last year
- HackSysExtremeVulnerableDriver exploits for latest Windows 10 version☆26Updated this week
- ROP ROCKET is an advanced code-reuse attack framework, with extensive ROP chain generation capabilities, including for novel Windows Sysc…☆164Updated 2 weeks ago
- LPE exploit for CVE-2023-36802☆24Updated 2 years ago
- Static Binary Instrumentation tool for Windows x64 executables☆207Updated 2 months ago
- Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation☆125Updated last year
- NovaHypervisor is a defensive x64 Intel host based hypervisor. The goal of this project is to protect against kernel based attacks (eithe…☆237Updated 2 months ago
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆121Updated last year
- ☆148Updated 2 years ago
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆98Updated last year
- Leaking kernel addresses from ETW consumers. Requires Administrator privileges.☆88Updated last month
- Exploitable drivers, you know what I mean☆154Updated last month
- ☆85Updated 9 months ago
- An IDA Pro plugin that display cross-references to functions or variables across the entire binary in Hex-Rays pseudocode☆123Updated 3 months ago
- IOCTLpus can be used to make DeviceIoControl requests with arbitrary inputs (with functionality somewhat similar to Burp Repeater).☆94Updated 4 years ago