ghostbyt3 / WinDriver-EXPLinks
This repo contains PoCs for vulnerable Windows drivers.
☆18Updated 3 months ago
Alternatives and similar repositories for WinDriver-EXP
Users that are interested in WinDriver-EXP are comparing it to the libraries listed below
Sorting:
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆117Updated last year
- IoctlHunter is a command-line tool designed to simplify the analysis of IOCTL calls made by userland software targeting Windows drivers.☆104Updated last year
- Bypass user-land hooks by syscall tampering via the Trap Flag☆131Updated 2 months ago
- A Mythic Agent written in PIC C.☆200Updated 9 months ago
- MIPS VM to execute payloads without allocating executable memory. Based on a PlayStation 1 (PSX) Emulator.☆121Updated 11 months ago
- ☆135Updated 9 months ago
- ☆157Updated 4 months ago
- Embedder is a collection of sources in different languages to embed Python interpreter with minimal dependencies☆121Updated last year
- "Service-less" driver loading☆162Updated 11 months ago
- A hoontr must hoont☆101Updated 2 months ago
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆145Updated last year
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆193Updated 11 months ago
- BSides Prishtina 2024 Malware Development and Persistence workshop☆104Updated 5 months ago
- A small How-To on creating your own weaponized WSL file☆117Updated 3 months ago
- Internal Monologue BOF☆77Updated 10 months ago
- ☆26Updated last year
- Activation Context Hijack☆170Updated 3 months ago
- ☆25Updated 3 years ago
- Identifies LOLDrivers that are not blocked by the active HVCI policy — ideal for BYOVD scenarios.☆73Updated 3 months ago
- ☆108Updated last year
- ☆29Updated last year
- Dynamic shellcode loader with sophisticated evasion capabilities☆251Updated last month
- Yet another shellcode loader - but a sneaky one☆25Updated 6 months ago
- ☆121Updated 7 months ago
- The DCERPC only printerbug.py version☆147Updated last week
- ☆135Updated 8 months ago
- Utilities for obfuscating shellcode☆94Updated last month
- ForsHops☆149Updated 7 months ago
- Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) Phan…☆273Updated last year
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆100Updated 7 months ago