tyranid / windows-attacksurface-workshop
Workshop material for a Windows Attack Surface Analysis Workshop
☆67Updated 5 years ago
Alternatives and similar repositories for windows-attacksurface-workshop:
Users that are interested in windows-attacksurface-workshop are comparing it to the libraries listed below
- Some sample code from my Zero Nights 2017 presentation.☆62Updated 7 years ago
- Public documents related to my talk "Bypass Windows Exploit Guard ASR" at Offensive Con 2019.☆93Updated 5 years ago
- Simple library to spray the Windows Kernel Pool☆107Updated 5 years ago
- ☆51Updated 7 years ago
- NCC Group's analysis and exploitation of CVE-2017-8759 along with further refinements☆96Updated 7 years ago
- HackSys Extreme Vulnerable Driver - Windows 10 x64 StackOverflow Exploit with SMEP Bypass☆61Updated 7 years ago
- A tool to exploit .NET DCOM for EoP and RCE. Is fixed in latest versions of the .NET.☆87Updated 10 years ago
- ☆49Updated 5 years ago
- ☆140Updated 7 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆134Updated 7 years ago
- ☆231Updated 7 years ago
- ☆46Updated 5 years ago
- PoC for persisting .NET payloads in Windows Notification Facility (WNF) state names using low-level Windows Kernel API calls.☆148Updated 5 years ago
- Exploits for CVE-2017-6008, a kernel pool buffer overflow leading to privilege escalation.☆116Updated 3 months ago
- Sandbox escape using WinHTTP Web Proxy Auto-Discovery Service☆85Updated 5 years ago
- A Fuzzer for Windows NDIS Drivers OID Handlers☆93Updated 3 years ago
- Exploit code used for the HackSysExtremeVulnerableDriver.☆43Updated 6 years ago
- ☆34Updated 7 years ago
- ☆33Updated 7 years ago
- CVE-2018-8440 standalone exploit☆79Updated 6 years ago
- Reflective Polymorphism☆104Updated 6 years ago
- ☆33Updated 9 years ago
- ☆134Updated 5 years ago
- Python solutions for the HackSysTeam Extreme Vulnerable Driver☆151Updated 3 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆36Updated 6 years ago
- FLARE Kernel Shellcode Loader☆175Updated 5 years ago
- UAC 0Day all day!☆58Updated 7 years ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆116Updated 6 years ago
- An exploit for CVE-2016-7255 on Windows 7/8/8.1/10(pre-anniversary) 64 bit☆81Updated 7 years ago
- heaper, an advanced heap analysis plugin for Immunity Debugger☆96Updated 12 years ago