jprx / DEFCON30-PACMAN
Materials from the DEF CON 30 talk on PACMAN
☆28Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for DEFCON30-PACMAN
- Defeating Pointer Authentication on the Apple M1 with Hardware Attacks☆34Updated 2 years ago
- An IOKit kext designed for microarchitectural security research on M1☆32Updated 2 years ago
- M1 bare metal project in Rust☆28Updated 2 years ago
- A Ghidra static analysis tool for locating PACMAN Gadgets☆12Updated 2 years ago
- Ghidra P-Code emulation and static LLVM lifting in Python☆29Updated 2 years ago
- Intel Management Engine JTAG Proof of Concept - 2022 Instructions☆32Updated 2 years ago
- This fork of QEMU enables fuzzing userspace ELF binaries under AFL++.☆79Updated 3 weeks ago
- ☆33Updated 7 months ago
- NinjaDiff is a binary diffing plugin for Binary Ninja. Read more on our blog, and contribute code & improvements!☆57Updated 3 years ago
- FirmWire has replaced ShannonEE. OLD: A dynamic analysis environment for Samsung's Shannon baseband.☆37Updated 2 years ago
- A firmware base address search tool.☆39Updated 5 months ago
- A tool combining DWARF info and source to search for kernel heap objects☆22Updated 8 months ago
- A cheat sheet that summarises "strategies" (or techniques) to use with angr.☆29Updated 3 years ago
- Automated recovery of Linux kernel build configurations☆24Updated 2 years ago
- This repository contains several tools to perform Prefetch Side-Channel Attacks☆57Updated 7 years ago
- Code of KextFuzz: Fuzzing macOS Kernel EXTensions on Apple Silicon via Exploiting Mitigations (USENIX Security'23)☆74Updated last year
- binary ninja related code☆24Updated 2 years ago
- Artifact of "Indirector: High-Precision Branch Target Injection Attacks Exploiting the Indirect Branch Predictor" [USENIX Security 2024]☆56Updated 3 months ago
- A code skeleton of Samsung's Shannon S5000 baseband modem.☆42Updated 4 years ago
- CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU☆45Updated last year
- Same-Architecture Firmware Rehosting and Fuzzing☆104Updated last year
- Code snippets for Binary Ninja's Python API☆23Updated 3 years ago
- Patch your macOS kernel to enable support for the high-resolution timers on M1☆23Updated 8 months ago
- ASPFuzz: Fuzzing the AMD SP's ROM bootloader with LibAFL using QEMU full-system emulation☆27Updated last year
- SMT Modeling for Ghidra's PCODE☆20Updated this week
- ☆43Updated 3 years ago
- Official Solution and Source Code for the "Mock Kernel" challenge from UIUCTF 2023☆49Updated last year
- A patched QEMU that exposes an interface for LibAFL-based fuzzers☆60Updated 3 weeks ago
- ☆65Updated 8 months ago
- CodeHawk Binary Analyzer for malware analysis and general reverse engineering☆25Updated this week