laginimaineb / standalone_msm8974
Standalone C version of the MSM8974 TrustZone exploit
☆26Updated 4 years ago
Alternatives and similar repositories for standalone_msm8974:
Users that are interested in standalone_msm8974 are comparing it to the libraries listed below
- Qualcomm TrustZone kernel privilege escalation☆61Updated 8 years ago
- Fuzzing utility which enables sending arbitrary SCMs to TrustZone☆60Updated 9 years ago
- Modifications in the qseecom driver which enable FuzzZone to operate☆23Updated 2 years ago
- CVE-2014-4322 Exploit☆23Updated 9 years ago
- Small script to unpack the bootloader image format present in Nexus 5 devices☆38Updated 9 years ago
- Google Project Zero OS X Vul Report Analysis☆34Updated 7 years ago
- Pixel bootlaoder exploit for reading flash storage☆31Updated 8 years ago
- Some tee/trustzone helper stuff☆51Updated 5 years ago
- Rebuilds kallsyms statically from a kernel binary☆41Updated 7 years ago
- CVE-2015-2231 POC☆10Updated 9 years ago
- QSEE Shellcode to directly hijack the "Normal World" Linux Kernel☆52Updated 8 years ago
- ☆25Updated 6 years ago
- PoC code for CVE-2018-9539☆18Updated 6 years ago
- A tool to find gadgets in the iOS kernelcache.☆33Updated 6 years ago
- Ghidra loader module for the Mobicore trustlet and driver binaries☆27Updated 5 years ago
- Here be dragons. Or Slides. Or Papers. Or Nothing :)☆30Updated 5 years ago
- PoC code for CVE-2017-13253☆39Updated 4 years ago
- Exploit Android MSM8974 Chipset☆13Updated 9 years ago
- Python-based interactive assembler/disassembler CLI, powered by Keystone/Capstone.☆31Updated 8 years ago
- Exploit code for CVE-2016-9066☆42Updated 7 years ago
- POCs for IOMemoryDescriptor racing bugs in iOS/OSX kernels☆19Updated 8 years ago
- Using CVE-2013-6282 to bypass Samsung kernel module authentication☆13Updated 11 years ago
- Exploiting the Semantic Gap in Trusted Execution Environments☆55Updated 5 years ago
- Plugins for IDA Pro and Hex-Rays☆40Updated 6 years ago
- Webkit JavascriptCore Array unshift function had a race condition, it leads to RCE.☆44Updated last year
- Yet another IDA Pro real time syncing plugin☆16Updated 6 years ago
- PoC code for our presentation titled "Stackjacking Your Way to grsec/PaX Bypass"☆46Updated 13 years ago
- CVE-2018-4330 POC for iOS☆18Updated 6 years ago