PoC for popping a system shell against the LnvMSRIO.sys driver
☆118Oct 6, 2025Updated 5 months ago
Alternatives and similar repositories for Lenovo-CVE-2025-8061
Users that are interested in Lenovo-CVE-2025-8061 are comparing it to the libraries listed below
Sorting:
- Proof of Concept CVE-2025-24990 (Agere Systems's driver)☆55Oct 31, 2025Updated 4 months ago
- Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75☆39Sep 16, 2025Updated 5 months ago
- ☆95Oct 25, 2025Updated 4 months ago
- ☆12Aug 16, 2024Updated last year
- Simple website to automatically generate string encryption/decryption routines for C#☆10Feb 12, 2022Updated 4 years ago
- Windows driver used to read and write memory from kernel space.☆10May 23, 2019Updated 6 years ago
- Windows kernel ROP-only implant exposing R/W primitives☆44Feb 1, 2026Updated last month
- Dynamic shellcode loader with sophisticated evasion capabilities☆286Oct 1, 2025Updated 5 months ago
- micro lua☆21Sep 25, 2024Updated last year
- Assembly-Export for IDA 9.0 Pro. Assemport exports all functions separately in an assembly file. This enables further processing by exter…☆29May 30, 2025Updated 9 months ago
- PoC for DEF CON 26: Playing Malware Injection with Exploit thoughts☆25Aug 17, 2018Updated 7 years ago
- BOF template with boflink and mutator kit support☆49Jan 8, 2026Updated 2 months ago
- <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE html><html xmlns="http://www.w3.org/1999/xhtml" dir="ltr" lang="en" xml:lang="en" class=…☆10Jun 13, 2017Updated 8 years ago
- Dns amplification attack☆24Mar 22, 2019Updated 6 years ago
- IOCs and notes related to malware☆27Jul 7, 2025Updated 8 months ago
- POC Hook of nt!HvcallCodeVa☆54May 8, 2023Updated 2 years ago
- A lightweight redirector for Google Cloud Run, enabling domain fronting via Google-owned infrastructure.☆134Nov 12, 2025Updated 3 months ago
- ☆22Jul 7, 2017Updated 8 years ago
- Lateral Movement Bof with MSI ODBC Driver Install☆145Sep 30, 2025Updated 5 months ago
- Pack required dlls into a single binary that has no imports and makes direct syscalls on Windows☆28Jul 14, 2017Updated 8 years ago
- ☆10Sep 11, 2021Updated 4 years ago
- A tool that reads a PE file from a byte array buffer and injects it into memory.☆28Aug 5, 2019Updated 6 years ago
- A few STUXNET samples and live traffic captures from July 2010 while many stuxnet implants were still operational.☆29Sep 17, 2024Updated last year
- Aggressor script to automatically download and load an arsenal of open source and private Cobalt Strike tooling.☆45Aug 16, 2024Updated last year
- A library with four different methods to execute shellcode in a process☆26Mar 24, 2020Updated 5 years ago
- hidden_syscall - syscaller without using syscall instruction in code☆63Jan 23, 2023Updated 3 years ago
- Dynamically generated obfuscated jumps and/or function calls☆38Apr 19, 2023Updated 2 years ago
- Kernel-mode Paravirtualization in Ring 2, LLVM based linker, and some other things!☆408Apr 19, 2025Updated 10 months ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆132Apr 26, 2023Updated 2 years ago
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆303Nov 20, 2025Updated 3 months ago
- A collection of PoCs to do common things in unconventional ways☆121Aug 31, 2025Updated 6 months ago
- BlackMail is a tool for creating and sending spoof mail.☆37Nov 16, 2023Updated 2 years ago
- xigmapper is a driver manual mapper that loads your driver before Vanguard, but after critical system infrastructure has been set up, all…☆298Jan 18, 2024Updated 2 years ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆79Aug 5, 2024Updated last year
- Old way for blocking NMI interrupts☆29Sep 6, 2022Updated 3 years ago
- Cheat for my own game SecureGame which uses a bootkit to hyperjack Hyper-V in order to access VBS enclave's memory☆113Dec 8, 2024Updated last year
- KVC enables unsigned driver loading via DSE bypass (g_CiOptions patch, skci.dll hijack, SeCiCallbacks redirection) and PP/PPL manipulatio…☆173Feb 26, 2026Updated last week
- A DLL that serves OutputDebugString content over a TCP connection☆35Sep 23, 2021Updated 4 years ago
- A collection of LLVM passes for obfuscating☆42Mar 9, 2023Updated 3 years ago