kkamagui / shadow-box-for-armLinks
Shadow-Box: Lightweight and Practical Kernel Protector for ARM (Presented at BlackHat Asia 2018)
☆73Updated 7 years ago
Alternatives and similar repositories for shadow-box-for-arm
Users that are interested in shadow-box-for-arm are comparing it to the libraries listed below
Sorting:
- Implementation of G-Free: Defeating Return-Oriented Programming through Gadget-less Binaries☆95Updated 7 years ago
- KLEE-TAINT - Klee with taint analysis support☆70Updated 7 years ago
- Security Evaluation of Dynamic Binary Instrumentation Engines☆80Updated 6 years ago
- A tool to add simple inline patches to a binary to rearrange its stack frames, and other things!☆46Updated 3 years ago
- ☆60Updated 5 years ago
- Using LibVMI to detect malware☆31Updated 3 years ago
- K-Hunt: Pinpointing Insecure Crypto Keys☆44Updated 6 years ago
- KLEE Symbolic Execution Engine☆60Updated 5 years ago
- American Fuzzy Lop + Dyninst == AFL Fuzzing blackbox binaries☆74Updated 4 years ago
- Some glue facilitating remote use of IDA (the Interactive DisAssembler) Python API.☆77Updated 5 years ago
- Abstract library to generate angr states from a debugger state☆60Updated 5 years ago
- Automated Return-Oriented Programming Chaining☆85Updated 9 years ago
- A hypervisor or virtual machine monitor (VMM) fuzzer☆28Updated 5 years ago
- ☆55Updated 3 years ago
- Symbolic execution for LLVM traces produced by PANDA☆40Updated 6 years ago
- Final project for the M.Sc. in Engineering in Computer Science at Università degli Studi di Roma "La Sapienza" (A.Y. 2016/2017).☆34Updated 7 years ago
- Dynamic analysis of binary programs to retrieve function-related information (arity, type of parameters, coupling).☆67Updated 7 years ago
- L1TF (Foreshadow) VM guest to host memory read PoC☆112Updated 6 years ago
- run AFL with pintool☆66Updated 5 years ago
- Rewriting functions in compiled binaries using McSema☆89Updated 6 years ago
- PathArmor context-sensitive CFI implementation☆45Updated 9 years ago
- A clang analyzer checker that looks for kernel uninitialized memory disclosures to userland.☆58Updated 6 years ago
- ropc-llvm is a PoC of a Turing complete ROP compiler with support for a subset of LLVM IR. It is an extension of ropc.☆69Updated 11 years ago
- Dynamic Control Flow Recovery☆24Updated 7 years ago
- Automatic function exporting and linking for fuzzing cross-architecture binaries.☆51Updated 6 years ago
- QSEE Shellcode to directly hijack the "Normal World" Linux Kernel☆55Updated 9 years ago
- Bootloader research tools (very much a work in progress)☆37Updated 6 years ago
- A mutation based user mode (ring3) dumb in-memory Windows Kernel (IOCTL) Fuzzer/Logger. This script attach it self to any given process a…☆67Updated 11 years ago
- PoC LibVMI-based GDB server for virtual machines☆53Updated 7 years ago
- Linux kernel JIT spray for SMEP / KERNEXEC bypass☆55Updated 12 years ago