jovanbulck / nemesis
Nemesis: Studying microarchitectural timing leaks in rudimentary CPU interrupt logic
☆86Updated 3 years ago
Alternatives and similar repositories for nemesis:
Users that are interested in nemesis are comparing it to the libraries listed below
- Kernel Address Isolation to have Side-channels Efficiently Removed☆215Updated 3 years ago
- PoC for breaking hypervisor ASLR using branch target buffer collisions☆166Updated 8 years ago
- MASCAB: a Micro-Architectural Side-Channel Attack Bibliography☆41Updated 6 years ago
- A tool to enable fuzzing for Spectre vulnerabilities☆30Updated 5 years ago
- Proof-of-concept code for the SMoTherSpectre exploit.☆74Updated 5 years ago
- Detecting Spectre vulnerabilities using symbolic execution, built on angr (github.com/angr/angr)☆75Updated 2 years ago
- A bare-metal x86 instruction set fuzzer a la Sandsifter☆65Updated 11 months ago
- ☆70Updated 4 years ago
- This repository contains several tools to perform Prefetch Side-Channel Attacks☆57Updated 7 years ago
- kCFI Documentation☆14Updated 7 years ago
- ☆55Updated 2 years ago
- Rewriting functions in compiled binaries using McSema☆88Updated 5 years ago
- KLEE Symbolic Execution Engine☆60Updated 5 years ago
- a tool designed to help perform and visualize trace-driven cache attacks against software in the secure world of TrustZone-enabled ARMv8 …☆79Updated 5 years ago
- Instruction cache leakage detection tool for modular exponentation software.☆14Updated 7 years ago
- JEFF file format tools☆27Updated 9 years ago
- This repository contains examples of DRAMA reverse-engineering and side-channel attacks☆176Updated 7 years ago
- Sample programs that illustrate how to use control flow integrity with the clang compiler☆105Updated 6 years ago
- ☆148Updated 6 years ago
- Huffman decompression for version 11.x Intel ME modules☆30Updated 7 years ago
- Implementation of our S&P16 paper: A Tough Call: Mitigating Advanced Code-Reuse Attacks☆46Updated 7 years ago
- ☆35Updated 3 years ago
- Docs and resources on CPU Speculative Execution bugs☆373Updated 7 years ago
- Notes on various topics I'm interested in☆157Updated 9 years ago
- ☆23Updated last year
- L1TF (Foreshadow) VM guest to host memory read PoC☆111Updated 6 years ago
- Stuff from CTF contests☆39Updated 5 years ago
- Diablo is a retargetable link-time binary rewriting framework☆75Updated 4 years ago
- Tracing framework for full system simulators☆55Updated 9 years ago
- Constantine is a compiler-based system to automatically harden programs against microarchitectural side channels☆72Updated 2 years ago