gregvish / l1tf-poc
L1TF (Foreshadow) VM guest to host memory read PoC
☆111Updated 5 years ago
Related projects: ⓘ
- Proof-of-concept code for the SMoTherSpectre exploit.☆73Updated 4 years ago
- Exploitation techniques to bypass Clang CFI when applied to Chromium☆110Updated 6 years ago
- Implementation of G-Free: Defeating Return-Oriented Programming through Gadget-less Binaries☆95Updated 6 years ago
- Proof-of-concept for the ZombieLoad and RIDL attacks☆23Updated 5 years ago
- Intel Management Engine firmware loader plugin for IDA☆90Updated 7 years ago
- Security Evaluation of Dynamic Binary Instrumentation Engines☆78Updated 6 years ago
- ☆55Updated 2 years ago
- ☆131Updated this week
- ☆33Updated 3 years ago
- SALT - SLUB ALlocator Tracer for the Linux kernel☆143Updated 6 years ago
- Arbitrary SMM code execution exploit for industry-wide 0day vulnerability in AMI Aptio based firmwares☆61Updated 7 years ago
- Agamotto: Accelerating Kernel Driver Fuzzing with Lightweight Virtual Machine Checkpoints☆117Updated 4 years ago
- Automatic modeling of hardware to enable the rehosting of embedded firmware☆80Updated 5 months ago
- Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, X86) adapted to afl++☆44Updated 2 years ago
- Runtime Prevention of Return-Oriented Programming Attacks☆82Updated 9 years ago
- PathArmor context-sensitive CFI implementation☆45Updated 8 years ago
- Some low-level stuff☆103Updated 4 months ago
- A quick PoC to try out the "meltdown" timing attack.☆153Updated 6 years ago
- run AFL with pintool☆66Updated 4 years ago
- Materials for the Evolutionary Kernel Fuzzing talk at Black Hat USA 2017☆69Updated 6 years ago
- Cisco MIPS debugger☆59Updated 6 years ago
- ☆138Updated 2 months ago
- DynamoRIO plugin to get ASAN and SanitizerCoverage compatible output for closed-source executables☆203Updated 3 years ago
- PoC for breaking hypervisor ASLR using branch target buffer collisions☆164Updated 7 years ago
- A semi-demi-working proof of concept for a mix of spectre and meltdown vulnerabilities☆129Updated 6 years ago
- MASCAB: a Micro-Architectural Side-Channel Attack Bibliography☆40Updated 6 years ago
- Tool to generate ROP gadgets for ARM, AARCH64, x86, MIPS, PPC, RISCV, SH4 and SPARC☆296Updated last month
- kCFI Documentation☆14Updated 7 years ago
- Intel PT log analyzer With Parallel Processing And Basic Block Offset Caching Support☆68Updated 10 months ago