The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303.
☆149Mar 29, 2021Updated 5 years ago
Alternatives and similar repositories for SmmExploit
Users that are interested in SmmExploit are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Arbitrary SMM code execution exploit for industry-wide 0day vulnerability in AMI Aptio based firmwares☆79Oct 22, 2016Updated 9 years ago
- This is an instruction to run your own SMM code.☆111Mar 8, 2021Updated 5 years ago
- UEFI and SMM Assessment Tool☆221Nov 21, 2024Updated last year
- The runtime DXE driver monitoring access to the UEFI variables by hooking the runtime service table.☆146Oct 9, 2020Updated 5 years ago
- The simple UEFI application to create a Windows Platform Binary Table (WPBT) from the UEFI shell.☆126Oct 12, 2021Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- The sample DXE runtime driver demonstrating how to program DMA remapping.☆75Dec 27, 2023Updated 2 years ago
- ☆18Oct 31, 2022Updated 3 years ago
- System Management RAM analysis tool☆83Aug 9, 2024Updated 2 years ago
- Updated version of System Management Mode backdoor for UEFI based platforms: old dog, new tricks☆378Nov 3, 2023Updated 2 years ago
- Information about a signed UEFI Shell that can be used when Secure Boot is enabled.☆85Apr 27, 2021Updated 5 years ago
- Tool to dump UEFI runtime drivers implementing runtime services for Windows☆114Dec 24, 2020Updated 5 years ago
- SMM rootkit similar to LoJax or MosaicRegressor☆147Nov 1, 2023Updated 2 years ago
- Binarly Vulnerability Research Advisories☆195Aug 6, 2026Updated 3 weeks ago
- baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability☆353Sep 27, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Dumps information about all the callback objects found in a dump file and the functions registered for them☆38Oct 21, 2020Updated 5 years ago
- IDA plugin and loader for UEFI firmware analysis and reverse engineering automation☆1,126Aug 20, 2026Updated last week
- The research UEFI hypervisor that supports booting an operating system.☆747Aug 15, 2024Updated 2 years ago
- ☆24Jul 24, 2023Updated 3 years ago
- ☆23Aug 7, 2021Updated 5 years ago
- A simple hypervisor demonstrating the use of the Intel VT-rp (redirect protection) technology.☆116Mar 28, 2024Updated 2 years ago
- Runtime smm module loader☆39Jan 12, 2023Updated 3 years ago
- Communication via callback☆73Oct 9, 2019Updated 6 years ago
- ☆75Dec 17, 2020Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Code Injection, Inject malicious payload via pagetables pml4.☆244Jul 7, 2021Updated 5 years ago
- PCI Express DIY hacking toolkit for Xilinx SP605. This repository is also home of Hyper-V Backdoor and Boot Backdoor, check readme for li…☆881Mar 7, 2026Updated 5 months ago
- ☆134Mar 9, 2026Updated 5 months ago
- A tool for UEFI firmware reverse engineering☆368Dec 28, 2024Updated last year
- Simple Demo of using Windows Hypervisor Platform☆29Jul 14, 2025Updated last year
- ☆99Jun 18, 2024Updated 2 years ago
- ☆50Jun 30, 2020Updated 6 years ago
- Breaking Secure Boot with SMM☆41Apr 5, 2022Updated 4 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆108Apr 24, 2020Updated 6 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- 👓A collection of papers/tools/exploits for UEFI security.☆230Sep 4, 2025Updated 11 months ago
- The Binarly Firmware Hunt (FwHunt) rule format was designed to scan for known vulnerabilities in UEFI firmware.☆248Mar 12, 2024Updated 2 years ago
- Monitor ETW events for Windows process mitigation policies, with stack traces☆30Oct 7, 2022Updated 3 years ago
- vulnerability in zam64.sys, zam32.sys allowing ring 0 code execution. CVE-2021-31727 and CVE-2021-31728 public reference.☆89May 10, 2021Updated 5 years ago
- A standalone python script leveraging ntdll for UEFI variable enumeration. This uses elements from the "chipsec" toolkit for formatting w…☆10Jul 25, 2023Updated 3 years ago
- win10 pgContext dynamic dump (btc version)☆113Jan 15, 2020Updated 6 years ago
- A library to develop kernel level Windows payloads for post HVCI era☆527May 18, 2021Updated 5 years ago