jovanbulck / nemesis
Nemesis: Studying microarchitectural timing leaks in rudimentary CPU interrupt logic
☆87Updated 3 years ago
Alternatives and similar repositories for nemesis:
Users that are interested in nemesis are comparing it to the libraries listed below
- Kernel Address Isolation to have Side-channels Efficiently Removed☆219Updated 3 years ago
- Detecting Spectre vulnerabilities using symbolic execution, built on angr (github.com/angr/angr)☆75Updated 2 years ago
- Proof-of-concept code for the SMoTherSpectre exploit.☆74Updated 5 years ago
- KLEE Symbolic Execution Engine☆60Updated 5 years ago
- PoC for breaking hypervisor ASLR using branch target buffer collisions☆166Updated 8 years ago
- Rewriting functions in compiled binaries using McSema☆88Updated 5 years ago
- MASCAB: a Micro-Architectural Side-Channel Attack Bibliography☆41Updated 6 years ago
- Writeup for BKP 2017 challenge "SIDH-RSA-AES128-GCM-SHA256"☆26Updated 8 years ago
- Fast and efficient binary translator☆58Updated 6 years ago
- Instruction cache leakage detection tool for modular exponentation software.☆14Updated 8 years ago
- Implementation of G-Free: Defeating Return-Oriented Programming through Gadget-less Binaries☆95Updated 6 years ago
- ☆149Updated 6 years ago
- ☆55Updated 2 years ago
- Doublethink challenge from DEF CON 2018☆23Updated 5 years ago
- A bare-metal x86 instruction set fuzzer a la Sandsifter☆66Updated last year
- Preventing code-reuse attacks by stopping code pointer leakages☆36Updated 9 years ago
- A Tale of Two Worlds: Assessing the Vulnerability of Enclave Shielding Runtimes☆45Updated last year
- PathArmor context-sensitive CFI implementation☆45Updated 9 years ago
- Tools built using Dyninst or Dyninst component libraries.☆25Updated 2 years ago
- relros.c applies RELRO to static binaries, and static_to_dyn.c applies ASLR to static binaries.☆33Updated 6 years ago
- Docs and resources on CPU Speculative Execution bugs☆373Updated 7 years ago
- Secretgrind: a Valgrind analysis tool to detect secrets in memory☆59Updated 8 years ago
- Constantine is a compiler-based system to automatically harden programs against microarchitectural side channels☆72Updated 2 years ago
- ASLREKT is a proof of concept for an unfixed generic local ASLR bypass in Linux.☆25Updated 5 years ago
- Sample programs that illustrate how to use control flow integrity with the clang compiler☆105Updated 6 years ago
- Open-source release for MemSentry (EuroSys'17)☆46Updated 3 years ago
- ☆63Updated 3 years ago
- a tool designed to help perform and visualize trace-driven cache attacks against software in the secure world of TrustZone-enabled ARMv8 …☆79Updated 5 years ago
- Minemu is a minimal emulator for dynamic taint analysis ( this is a mirror of https://minemu.org/code/minemu.git )☆40Updated 4 years ago
- Experimental setup of "Intel MPX explained"☆26Updated 5 years ago