jprx / PacmanFinder
A Ghidra static analysis tool for locating PACMAN Gadgets
☆13Updated 2 years ago
Alternatives and similar repositories for PacmanFinder
Users that are interested in PacmanFinder are comparing it to the libraries listed below
Sorting:
- M1 bare metal project in Rust☆31Updated 2 years ago
- An IOKit kext designed for microarchitectural security research on M1☆42Updated 2 years ago
- Defeating Pointer Authentication on the Apple M1 with Hardware Attacks☆42Updated 2 years ago
- Materials from the DEF CON 30 talk on PACMAN☆32Updated 2 years ago
- Artifact of "Indirector: High-Precision Branch Target Injection Attacks Exploiting the Indirect Branch Predictor" [USENIX Security 2024]☆62Updated 9 months ago
- Patch your macOS kernel to enable support for the high-resolution timers on M1☆30Updated last week
- Proof-of-concept implementation for the paper "Osiris: Automated Discovery of Microarchitectural Side Channels" (USENIX Security'21)☆57Updated 3 years ago
- ☆73Updated last year
- ☆26Updated 3 months ago
- KLEESpectre is a symbolic execution engine with speculation semantic and cache modelling☆34Updated 5 years ago
- Proof-of-concept implementation for the paper "Efficient and Generic Microarchitectural Hash-Function Recovery" (IEEE S&P 2024)☆28Updated last year
- ☆24Updated last year
- Proof-of-concept code for the SMoTherSpectre exploit.☆74Updated 5 years ago
- ☆55Updated 2 months ago
- ☆10Updated 5 months ago
- Pre-Silicon Hardware Fuzzing Toolkit☆56Updated last week
- A tool to perform so called BGE attack☆24Updated last year
- Official Solution and Source Code for the "Mock Kernel" challenge from UIUCTF 2023☆48Updated last year
- This repository contains several tools to perform Prefetch Side-Channel Attacks☆59Updated 8 years ago
- ROSA: Finding Backdoors with Fuzzing☆22Updated 2 months ago
- Binsec/Rel is an extension of Binsec that implements relational symbolic execution for constant-time verification and secret-erasure at b…☆33Updated 3 months ago
- ☆20Updated 8 months ago
- This repo demonstrates the Return-to-Non-Secure (ret2ns) vulnerability on ARM Cortex-M TrustZone. It contains the attack and defense demo…☆31Updated last year
- How to use LLVM passes☆32Updated 2 years ago
- Uncovering Container Confusion in the Linux Kernel☆43Updated last year
- Symbolic execution for RISC-V machine code based on the formal LibRISCV ISA model☆46Updated 3 months ago
- Kasper: Scanning for Generalized Transient Execution Gadgets in the Linux Kernel☆58Updated last year
- ☆14Updated 2 years ago
- ☆37Updated last year
- A migration for the page table entry based side-channel attack agains SGX enclaves.☆16Updated 3 months ago