googleprojectzero / bochspwn-reloadedLinks
A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3
☆310Updated 6 years ago
Alternatives and similar repositories for bochspwn-reloaded
Users that are interested in bochspwn-reloaded are comparing it to the libraries listed below
Sorting:
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆341Updated 6 years ago
- PEDA-like debugger UI for WinDbg☆205Updated last year
- Cross Platform Kernel Fuzzer Framework☆453Updated 7 years ago
- A hypervisor for fuzzing built with WHVP and Bochs☆378Updated 6 years ago
- DynamoRIO plugin to get ASAN and SanitizerCoverage compatible output for closed-source executables☆212Updated 4 years ago
- ☆251Updated 5 years ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆171Updated 10 years ago
- Have fun with the LowFragmentationHeap☆252Updated 4 years ago
- Fuzzing the Kernel Using Unicornafl and AFL++☆304Updated 2 years ago
- Code and exercises for a workshop on z3 and angr☆233Updated 5 years ago
- AFL + DynamoRIO = fuzzing binaries with no source code on Linux☆248Updated 6 years ago
- Fuzz and Detect "Use After Free" vulnerability in win32k.sys ( Heap based )☆138Updated 10 years ago
- ☆285Updated 5 years ago
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆387Updated 2 years ago
- Tool to generate ROP gadgets for ARM, AARCH64, x86, MIPS, PPC, RISCV, SH4 and SPARC☆306Updated last year
- ☆181Updated 7 years ago
- CTF Challenge Framework for Windows 8 and above☆156Updated 4 years ago
- Use angr inside GDB. Create an angr state from the current debugger state.☆203Updated 5 years ago
- Manul is a coverage-guided parallel fuzzer for open-source and blackbox binaries on Windows, Linux and MacOS☆335Updated 5 years ago
- A DBI tool to discover heap memory related bugs☆125Updated 7 years ago
- Use angr in the IDA Pro debugger generating a state from the current debug session☆282Updated 5 years ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆437Updated 8 months ago
- Block Oriented Programming -- Compiler☆186Updated 5 years ago
- WCTF 2019 challenge☆103Updated 6 years ago
- A plugin for Hex-Ray's IDA Pro and radare2 to export the symbols recognized to the ELF symbol table☆213Updated 3 years ago
- Some kernel fuzzing paper about windows and linux☆255Updated 8 years ago
- A description of the "House of Corrosion" GLIBC heap exploitation technique.☆224Updated 5 years ago
- American Fuzzy Lop + Dyninst == AFL Fuzzing blackbox binaries☆189Updated 4 years ago
- HeapHopper is a bounded model checking framework for Heap-implementations☆222Updated 5 months ago
- SymGDB - symbolic execution plugin for gdb☆218Updated 7 years ago