sefcom / KHeaps
Playing for {K (H) eaps}: Understanding and Improving Linux Kernel Exploit Reliability
☆78Updated 2 years ago
Alternatives and similar repositories for KHeaps:
Users that are interested in KHeaps are comparing it to the libraries listed below
- ☆77Updated last year
- A Symbolic Execution Engine for Dynamic Kernel Analysis☆29Updated 10 months ago
- Identify and test the security of dynamic memory allocators in monolithic firmware images☆42Updated last year
- ☆34Updated last year
- A data-flow-guided fuzzer☆119Updated last year
- SyzScope is a research project that aims to reveal high-risk security bugs on Syzbot. Learn more details in our paper.☆79Updated 2 months ago
- ☆52Updated 11 months ago
- RetSpill: Igniting User-Controlled Data to Burn Away Linux Kernel Protections☆55Updated 11 months ago
- A collection of widely-fuzzed targets☆45Updated 5 years ago
- GDB plug-in that helps exploiting the Linux kernel's SLUB allocator☆9Updated 3 years ago
- GDB plug-in that helps exploiting the Linux kernel's SLUB allocator☆85Updated 2 years ago
- UAF Fuzzing Benchmark☆56Updated 4 years ago
- gdb plugin for linux kernel to debug slub☆51Updated 4 years ago
- USENIX 2021 - Nyx: Greybox Hypervisor Fuzzing using Fast Snapshots and Affine Types☆201Updated 3 years ago
- ☆14Updated 2 years ago
- AFLplusplus + libprotobuf-mutator = love☆84Updated 5 years ago
- ☆22Updated 7 months ago
- uacatcher open source repo☆19Updated last year
- Symbolic Execution Over Processor Traces☆120Updated 8 months ago
- angr's exploration technique to perform taint analysis☆59Updated 5 years ago
- ☆26Updated 2 years ago
- Towards Facilitating Exploit Generation of Kernel Out-Of-Bounds Write Vulnerabilities☆88Updated 11 months ago
- a browser fuzzer☆34Updated last year
- SyzBridge is a research project that adapts Linux upstream PoCs to downstream distributions. It provides rich interfaces that allow you t…☆35Updated 4 months ago
- ☆90Updated last year
- Material and examples for a presentation on static binary analysis.☆42Updated 4 years ago
- The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power…☆66Updated 3 years ago
- Prototype of the paper "APICraft: Fuzz Driver Generation for Closed-source SDK Libraries".☆65Updated 3 years ago
- A regression greybox fuzzer aflchurn☆65Updated 2 years ago
- ☆39Updated last year