The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303.
☆148Mar 29, 2021Updated 5 years ago
Alternatives and similar repositories for SmmExploit
Users that are interested in SmmExploit are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Arbitrary SMM code execution exploit for industry-wide 0day vulnerability in AMI Aptio based firmwares☆78Oct 22, 2016Updated 9 years ago
- This is an instruction to run your own SMM code.☆111Mar 8, 2021Updated 5 years ago
- UEFI and SMM Assessment Tool☆221Nov 21, 2024Updated last year
- The runtime DXE driver monitoring access to the UEFI variables by hooking the runtime service table.☆146Oct 9, 2020Updated 5 years ago
- The simple UEFI application to create a Windows Platform Binary Table (WPBT) from the UEFI shell.☆124Oct 12, 2021Updated 4 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆17Oct 31, 2022Updated 3 years ago
- The sample DXE runtime driver demonstrating how to program DMA remapping.☆74Dec 27, 2023Updated 2 years ago
- System Management RAM analysis tool☆83Aug 9, 2024Updated last year
- Updated version of System Management Mode backdoor for UEFI based platforms: old dog, new tricks☆375Nov 3, 2023Updated 2 years ago
- Information about a signed UEFI Shell that can be used when Secure Boot is enabled.☆85Apr 27, 2021Updated 5 years ago
- Tool to dump UEFI runtime drivers implementing runtime services for Windows☆112Dec 24, 2020Updated 5 years ago
- SMM rootkit similar to LoJax or MosaicRegressor☆147Nov 1, 2023Updated 2 years ago
- Binarly Vulnerability Research Advisories☆191Jul 1, 2026Updated 2 weeks ago
- baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability☆352Sep 27, 2023Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Dumps information about all the callback objects found in a dump file and the functions registered for them☆38Oct 21, 2020Updated 5 years ago
- IDA plugin and loader for UEFI firmware analysis and reverse engineering automation☆1,114May 6, 2026Updated 2 months ago
- The research UEFI hypervisor that supports booting an operating system.☆746Aug 15, 2024Updated last year
- ☆24Jul 24, 2023Updated 2 years ago
- ☆22Aug 7, 2021Updated 4 years ago
- A simple hypervisor demonstrating the use of the Intel VT-rp (redirect protection) technology.☆116Mar 28, 2024Updated 2 years ago
- Runtime smm module loader☆39Jan 12, 2023Updated 3 years ago
- Communication via callback☆73Oct 9, 2019Updated 6 years ago
- ☆74Dec 17, 2020Updated 5 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Code Injection, Inject malicious payload via pagetables pml4.☆245Jul 7, 2021Updated 5 years ago
- PCI Express DIY hacking toolkit for Xilinx SP605. This repository is also home of Hyper-V Backdoor and Boot Backdoor, check readme for li…☆880Mar 7, 2026Updated 4 months ago
- ☆132Mar 9, 2026Updated 4 months ago
- A tool for UEFI firmware reverse engineering☆368Dec 28, 2024Updated last year
- Simple Demo of using Windows Hypervisor Platform☆29Jul 14, 2025Updated last year
- ☆99Jun 18, 2024Updated 2 years ago
- ☆47Jun 30, 2020Updated 6 years ago
- Breaking Secure Boot with SMM☆41Apr 5, 2022Updated 4 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆108Apr 24, 2020Updated 6 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- 👓A collection of papers/tools/exploits for UEFI security.☆225Sep 4, 2025Updated 10 months ago
- The Binarly Firmware Hunt (FwHunt) rule format was designed to scan for known vulnerabilities in UEFI firmware.☆247Mar 12, 2024Updated 2 years ago
- Monitor ETW events for Windows process mitigation policies, with stack traces☆30Oct 7, 2022Updated 3 years ago
- vulnerability in zam64.sys, zam32.sys allowing ring 0 code execution. CVE-2021-31727 and CVE-2021-31728 public reference.☆89May 10, 2021Updated 5 years ago
- A standalone python script leveraging ntdll for UEFI variable enumeration. This uses elements from the "chipsec" toolkit for formatting w…☆10Jul 25, 2023Updated 2 years ago
- ☆230Mar 11, 2023Updated 3 years ago
- win10 pgContext dynamic dump (btc version)☆115Jan 15, 2020Updated 6 years ago