long123king / TokenInsight
An application for obtaining, dumping and modifying token from user land.
☆27Updated 8 years ago
Related projects: ⓘ
- Kernel Shellcode to add all privileges in token☆13Updated 7 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆25Updated 7 years ago
- A sample project for using Capstone from a driver in Visual Studio 2015☆34Updated 8 years ago
- ☆33Updated 6 years ago
- API logger plugin for Intel Pintool☆14Updated 6 years ago
- Kernel-mode file scanner☆17Updated 6 years ago
- A windbg extension, extracting token related contents☆41Updated 3 years ago
- ☆28Updated 7 years ago
- ☆22Updated 7 years ago
- reversed emet tool☆24Updated 11 years ago
- Reverse engineering toolkit for exploit/malware analysis☆34Updated 4 years ago
- CVE-2014-0816☆24Updated 7 years ago
- Windows 10 UAC bypass PoC using LaunchInfSection☆34Updated 6 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆36Updated 7 years ago
- ☆13Updated 7 years ago
- ☆28Updated 9 years ago
- Static analysis tools for x86 assembly☆13Updated 7 years ago
- Helper utility for debugging windows PE/PE+ loader.☆49Updated 9 years ago
- Import debugging traces from WinDBG into IDA. Color the graph, fill in the value of all the operands, etc.☆25Updated 11 years ago
- ☆12Updated 6 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 6 years ago
- Slides of 44Con 2018☆21Updated 5 years ago
- Solutions to HackSysExtremeVulnerableDriver challenges though my following of @FuzzySecurity's tutorials plus futher explanations where n…☆21Updated 7 years ago
- ☆26Updated this week
- r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems☆13Updated 5 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆21Updated 7 years ago
- ☆24Updated 8 years ago
- A POC for Windows Extension Host hooking☆22Updated 5 years ago
- Control Flow Guard bypass using LoadLibrary and IsBadCodePtr☆45Updated 7 years ago