hardenedvault / bootkit-samples
Bootkit sample for firmware attack
☆245Updated 2 months ago
Alternatives and similar repositories for bootkit-samples:
Users that are interested in bootkit-samples are comparing it to the libraries listed below
- baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability☆315Updated last year
- Linux Loadable Kernel Module (LKM) based rootkit (ring-0), capable of hiding itself, processes/implants, rmmod proof, has ability to bypa…☆243Updated last year
- Virus Exchange (VX) - Collection of malware or assembly code used for "offensive" purposed.☆180Updated 3 years ago
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆369Updated 3 months ago
- Exploit Development - Weaponized Exploit and Proof of Concepts (PoC)☆220Updated last year
- Tools for analyzing UEFI firmware and checking UEFI modules with FwHunt rules☆225Updated last month
- This repo contains write ups of vulnerabilities I've found and exploits I've publicly developed.☆144Updated 2 years ago
- Binarly Vulnerability Research Advisories☆170Updated 2 months ago
- The source code files that accompany the short book "Building C2 Implants in C++: A Primer" by Steven Patterson (@shogun_lab).☆225Updated 2 months ago
- A Binary Genetic Traits Lexer Framework☆487Updated last week
- Academic project of Linux rootkit made for Bachelor Engineering Thesis.☆99Updated 6 months ago
- A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.ht…☆633Updated 2 years ago
- Kernel Exploits☆247Updated 3 years ago
- Skrull is a malware DRM, that prevents Automatic Sample Submission by AV/EDR and Signature Scanning from Kernel. It generates launchers t…☆453Updated 3 years ago
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆731Updated 11 months ago
- Static Binary Instrumentation tool for Windows x64 executables☆196Updated 2 weeks ago
- A DTrace on Windows Reimplementation☆338Updated 2 weeks ago
- Code snippets for bare-metal malware development☆97Updated 3 years ago
- A comprehensive Hypervisor resources repo☆101Updated last week
- Collection of Windows Privilege Escalation (Analyse/PoC/Exploit)☆360Updated 3 months ago
- This repository includes code and IoCs that are the product of research done in Akamai's various security research teams.☆487Updated 2 months ago
- Windows x64 handcrafted token stealing kernel-mode shellcode☆505Updated 10 months ago
- ☆740Updated last year
- "Screwed Drivers" centralized information source for code references, links, etc.☆349Updated 4 years ago
- Find patterns of vulnerabilities on Windows in order to find 0-day and write exploits of 1-days. We use Microsoft security updates in ord…☆179Updated 3 years ago
- Various ways to execute shellcode☆482Updated 11 months ago
- PCAP visualization tool☆103Updated last year
- ASLR bypass without infoleak☆158Updated 3 years ago
- Internals information about Hyper-V☆682Updated last month
- Expriments☆451Updated 4 months ago