PoC for popping a system shell against the LnvMSRIO.sys driver
☆125Oct 6, 2025Updated 11 months ago
Alternatives and similar repositories for Lenovo-CVE-2025-8061
Users that are interested in Lenovo-CVE-2025-8061 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Blog Post: https://blog.doyensec.com/2025/10/08/ksmbd-3.html☆20Oct 8, 2025Updated 11 months ago
- Proof of Concept CVE-2025-24990 (Agere Systems's driver)☆58Oct 31, 2025Updated 10 months ago
- Dynamic shellcode loader with sophisticated evasion capabilities☆343Oct 1, 2025Updated 11 months ago
- Lateral Movement Bof with MSI ODBC Driver Install☆173Sep 30, 2025Updated 11 months ago
- A BOF that's a BOF Loader and more☆212Apr 6, 2026Updated 5 months ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- "Bypassing" HVCI via donor PFN swaps to modify read-only code pages. Call chained kernel functions (kCET and SLAT support), and more.☆133Mar 16, 2026Updated 6 months ago
- This repo contains PoCs for vulnerable Windows drivers.☆153Dec 20, 2025Updated 9 months ago
- CVE-2025-50168 Exploit PoC — Pwn2Own Berlin 2025 - LPE(Windows 11) winning bug.☆145Nov 3, 2025Updated 10 months ago
- WSUS Unauthenticated RCE☆175Oct 28, 2025Updated 10 months ago
- Rewrite and obfuscate code in compiled binaries☆277Dec 13, 2025Updated 9 months ago
- This is the loader that supports running a program with Protected Process Light (PPL) protection functionality.☆309May 23, 2026Updated 3 months ago
- Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods…☆203Apr 27, 2026Updated 4 months ago
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆346Nov 20, 2025Updated 10 months ago
- SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and up…☆267Feb 2, 2026Updated 7 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- This is the tool to dump the LSASS process on modern Windows 11☆664May 23, 2026Updated 3 months ago
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆463Jun 27, 2025Updated last year
- EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.☆866May 23, 2026Updated 3 months ago
- Blocking Windows EDR agents by registering an own IPC-object in the Object Manager’s namespace (CVE-2023-3280, CVE-2024-5909, CVE-2024-20…☆35Feb 27, 2025Updated last year
- Leaking kernel addresses from ETW consumers. Requires Administrator privileges.☆93Nov 6, 2025Updated 10 months ago
- PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads☆256Oct 30, 2025Updated 10 months ago
- ☆31Apr 2, 2026Updated 5 months ago
- A critical RCE vulnerability in Windows TCP/IP stack (CVE-2025-26686) leaves sensitive memory unlocked, allowing remote attackers to hija…☆32Sep 16, 2025Updated last year
- Reports and POCs for CVE 2024-43570 and CVE-2024-43535☆31Jun 7, 2025Updated last year
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Exploit targeting NT kernel in 24H2 Windows Insider Preview☆153Apr 26, 2024Updated 2 years ago
- Fuzzing Harness and Unpatched Crash Results from Fuzzing Defender MpEngine☆46Jul 29, 2025Updated last year
- Injecting DLL into LSASS at boot☆155Apr 29, 2025Updated last year
- Fairy Law - Compromise or disable EDR security solutions☆79Dec 1, 2025Updated 9 months ago
- ☆348Aug 20, 2025Updated last year
- Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75☆40Sep 16, 2025Updated last year
- .NET tool used to enrich RPC telemetry☆101Jan 24, 2026Updated 7 months ago
- Find out how to bypass HVCI (or not). My own research on Microsoft Warbird (specifically in clipsp.sys)☆101Oct 26, 2025Updated 10 months ago
- Two tools written in C that block network traffic for blacklisted EDR processes, using either Windows Defender Firewall (WDF) or Windows …☆267Sep 23, 2025Updated 11 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- bootkit驱动映射,三环进程注入加载指定模块☆16Oct 8, 2024Updated last year
- Intel 64/Windows low-level experiments☆118Updated this week
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆208Nov 18, 2025Updated 10 months ago
- Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls☆291Jul 13, 2026Updated 2 months ago
- Automatically scan the file system to identify Electron applications vulnerable to ASAR tampering.☆161Nov 28, 2025Updated 9 months ago
- Obex – Blocking unwanted DLLs in user mode☆280Sep 18, 2025Updated last year
- Windows AppLocker Driver (appid.sys) LPE☆82Jul 29, 2024Updated 2 years ago