gregvish / l1tf-poc
L1TF (Foreshadow) VM guest to host memory read PoC
☆111Updated 6 years ago
Alternatives and similar repositories for l1tf-poc:
Users that are interested in l1tf-poc are comparing it to the libraries listed below
- ☆55Updated 2 years ago
- Proof-of-concept code for the SMoTherSpectre exploit.☆74Updated 5 years ago
- Implementation of G-Free: Defeating Return-Oriented Programming through Gadget-less Binaries☆95Updated 6 years ago
- SALT - SLUB ALlocator Tracer for the Linux kernel☆149Updated 6 years ago
- Security Evaluation of Dynamic Binary Instrumentation Engines☆78Updated 6 years ago
- PathArmor context-sensitive CFI implementation☆45Updated 9 years ago
- ☆35Updated 3 years ago
- Arbitrary SMM code execution exploit for industry-wide 0day vulnerability in AMI Aptio based firmwares☆64Updated 8 years ago
- Automatic modeling of hardware to enable the rehosting of embedded firmware☆82Updated 9 months ago
- Exploitation techniques to bypass Clang CFI when applied to Chromium☆111Updated 6 years ago
- Intel ATR Training: Security of BIOS/UEFI System Firmware from Attacker and Defender Perspectives☆96Updated 7 years ago
- Agamotto: Accelerating Kernel Driver Fuzzing with Lightweight Virtual Machine Checkpoints☆120Updated 4 years ago
- Using LibVMI to detect malware☆30Updated 2 years ago
- ☆83Updated last year
- Intel Management Engine firmware loader plugin for IDA☆90Updated 7 years ago
- Intel PT log analyzer With Parallel Processing And Basic Block Offset Caching Support☆69Updated last year
- Tool for testing and finding minimal eviction sets☆96Updated 3 years ago
- Some low-level stuff☆104Updated 7 months ago
- HeapHopper is a bounded model checking framework for Heap-implementations☆213Updated 3 months ago
- Use ltrace with pwnlib.tubes.process instances, useful for heap exploitation. Pwntools rocks!☆52Updated 6 years ago
- Materials for the Evolutionary Kernel Fuzzing talk at Black Hat USA 2017☆68Updated 7 years ago
- DynamoRIO plugin to get ASAN and SanitizerCoverage compatible output for closed-source executables☆206Updated 3 years ago
- This repository contains several tools to perform Prefetch Side-Channel Attacks☆57Updated 7 years ago
- Tool to generate ROP gadgets for ARM, AARCH64, x86, MIPS, PPC, RISCV, SH4 and SPARC☆300Updated 5 months ago
- CRAX: software CRash analysis for Automatic eXploit generation☆49Updated 9 years ago
- GlibC Malloc for Exploiters presentation☆146Updated 5 years ago
- A pip wrapper around our ridiculous amount of qemu forks.☆48Updated 11 months ago
- An intentionally vulnerable linux driver for research purposes/practice in kernel exploit dev☆113Updated 7 years ago