googleprojectzero / bochspwn-reloaded
A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3
☆301Updated 5 years ago
Alternatives and similar repositories for bochspwn-reloaded:
Users that are interested in bochspwn-reloaded are comparing it to the libraries listed below
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆334Updated 5 years ago
- Cross Platform Kernel Fuzzer Framework☆448Updated 6 years ago
- ☆283Updated 4 years ago
- ☆243Updated 4 years ago
- A hypervisor for fuzzing built with WHVP and Bochs☆371Updated 6 years ago
- PEDA-like debugger UI for WinDbg☆202Updated 10 months ago
- DynamoRIO plugin to get ASAN and SanitizerCoverage compatible output for closed-source executables☆206Updated 3 years ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆158Updated 9 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆426Updated 6 years ago
- AFL + DynamoRIO = fuzzing binaries with no source code on Linux☆246Updated 5 years ago
- Kernel Fuzzer for Xen Project (KF/x) - Hypervisor-based fuzzing using Xen VM forking, VMI & AFL☆470Updated 7 months ago
- Fuzz and Detect "Use After Free" vulnerability in win32k.sys ( Heap based )☆132Updated 9 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆263Updated 7 years ago
- Code and exercises for a workshop on z3 and angr☆225Updated 4 years ago
- Manul is a coverage-guided parallel fuzzer for open-source and blackbox binaries on Windows, Linux and MacOS☆339Updated 4 years ago
- Fuzzing the Kernel Using Unicornafl and AFL++☆296Updated 2 years ago
- Detect, analyze and uniquely identify crashes in Windows applications☆501Updated this week
- Windows Kernel Drivers fuzzer☆306Updated 7 years ago
- Use angr inside GDB. Create an angr state from the current debugger state.☆199Updated 4 years ago
- Use angr in the IDA Pro debugger generating a state from the current debug session☆269Updated 4 years ago
- Some kernel fuzzing paper about windows and linux☆255Updated 7 years ago
- Have fun with the LowFragmentationHeap☆235Updated 4 years ago
- ☆176Updated 6 years ago
- Code for the USENIX 2017 paper: kAFL: Hardware-Assisted Feedback Fuzzing for OS Kernels☆577Updated 6 years ago
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆384Updated last year
- HeapHopper is a bounded model checking framework for Heap-implementations☆213Updated 4 months ago
- SALT - SLUB ALlocator Tracer for the Linux kernel☆148Updated 6 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆389Updated 5 years ago
- ☆193Updated last year
- CTF Challenge Framework for Windows 8 and above☆151Updated 3 years ago