PoC for breaking hypervisor ASLR using branch target buffer collisions
☆169Sep 24, 2016Updated 9 years ago
Alternatives and similar repositories for mario_baslr
Users that are interested in mario_baslr are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Xenpwn is a toolkit for memory access tracing using hardware-assisted virtualization☆146Jul 22, 2016Updated 10 years ago
- The DrK Attack - Proof of concept☆349Mar 13, 2022Updated 4 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆174Dec 7, 2016Updated 9 years ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆118Aug 8, 2018Updated 7 years ago
- A Genetic File, Syscall and Network Fuzzer.☆58May 28, 2017Updated 9 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Reverse Engineering Page Table Caches in Your Processor☆375May 5, 2021Updated 5 years ago
- SymGDB - symbolic execution plugin for gdb☆218May 15, 2018Updated 8 years ago
- Open source library that implements translator and tools for REIL (Reverse Engineering Intermediate Language)☆511May 1, 2021Updated 5 years ago
- Dump privileged ARM system registers from usermode using variant 3a of Meltdown☆247Jan 12, 2018Updated 8 years ago
- Misc PoCs for various research topics☆26May 25, 2026Updated 2 months ago
- ☆92Jul 31, 2019Updated 6 years ago
- jemalloc heap exploitation framework☆468Nov 29, 2021Updated 4 years ago
- Bunch of techniques potentially used by malware to detect analysis environments☆160Jul 4, 2016Updated 10 years ago
- Writing PoC for fun and educate people take security seriously;-)☆142Dec 31, 2018Updated 7 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- CansecWest2016 - Getting Physical: Extreme Abuse of Intel Based Paging Systems☆28Apr 26, 2016Updated 10 years ago
- Exploitation techniques to bypass Clang CFI when applied to Chromium☆115Mar 5, 2018Updated 8 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Sep 12, 2016Updated 9 years ago
- PyAna - Analyzing the Windows shellcode☆247Feb 16, 2016Updated 10 years ago
- wow64 syscall filter☆15Nov 12, 2014Updated 11 years ago
- CVE-2014-0816☆25Oct 5, 2016Updated 9 years ago
- Quickly find references to the specified Immediate number, or find the function call of specifies offset, and generate C++ functions call…☆25Feb 25, 2017Updated 9 years ago
- aflpin enables afl to fuzz blackbox binaries using a pin tool to trace execution branches.☆173Jan 27, 2015Updated 11 years ago
- Patching Flash binary to stop Flash exploits and zero-days☆62Apr 18, 2017Updated 9 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3☆311Feb 24, 2019Updated 7 years ago
- AFL/QEMU fuzzing with full-system emulation.☆644Sep 9, 2018Updated 7 years ago
- Grep-like WinDbg extension☆43Apr 7, 2017Updated 9 years ago
- Arbitrary code execution with kernel privileges using CVE-2018-8897.☆422May 18, 2018Updated 8 years ago
- High-throughput fuzzer and emulator of DECREE binaries☆241Sep 4, 2019Updated 6 years ago
- This repository contains several tools to perform Prefetch Side-Channel Attacks☆63Feb 22, 2017Updated 9 years ago
- Translator from asm to C, but not decompiler. Something between compiler and decompiler.☆59Aug 31, 2021Updated 4 years ago
- Simple library to spray the Windows Kernel Pool☆110Jan 6, 2020Updated 6 years ago
- Reverse Engineering and Exploit Development stuff☆31Mar 8, 2018Updated 8 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Nosy Newt is a simple concolic execution tool for exploring the input space of a binary executable program based in Triton☆62Aug 5, 2017Updated 8 years ago
- Kernel Address Space Layout Randomization (KASLR) Recovery Software☆98Nov 26, 2016Updated 9 years ago
- Miscellanous scripts used for malware analysis☆22Oct 4, 2018Updated 7 years ago
- ProXBBE (Protocol eXtraction By Binary Execution)☆31Sep 21, 2017Updated 8 years ago
- An automated NFC fuzzing framework for Android devices.☆146Nov 19, 2020Updated 5 years ago
- Automatically exported from code.google.com/p/kemufuzzer☆26Mar 17, 2015Updated 11 years ago
- Integrate the dharma grammar fuzzer into honggfuzz☆26Aug 11, 2017Updated 8 years ago