vusec / bhi-spectre-bhb
This repository contains exploit and reverse-engineering source code regarding the Spectre-BHB/Branch History Injection vulnerability
☆113Updated 2 years ago
Alternatives and similar repositories for bhi-spectre-bhb:
Users that are interested in bhi-spectre-bhb are comparing it to the libraries listed below
- Arbitrary Speculative Code Execution with Return Instructions☆157Updated last year
- ☆167Updated last week
- ☆69Updated 11 months ago
- Ghidra Processor Module to disassemble and decompile the x86 Intel Atom microcode☆79Updated last year
- ☆152Updated last month
- PoC of fuzzing closed-source userspace binaries with KVM☆163Updated 9 months ago
- ☆177Updated last year
- Spectre based on Linear Address Masking☆68Updated last year
- Environment with vulnerable kernel for exploitation of the TEE driver (CVE-2021-44733)☆75Updated 3 years ago
- High performance fuzzing using riscv to x86 binary translations and modern fuzzing techniques☆150Updated last year
- A Rowhammer fuzzer for AMD Zen-based systems (USENIX Security '24).☆45Updated 7 months ago
- Proof-of-concept for the GhostWrite CPU bug.☆106Updated 6 months ago
- Kernel Fuzzer for Xen Project (KF/x) - Hypervisor-based fuzzing using Xen VM forking, VMI & AFL☆470Updated 7 months ago
- InSpectre Gadget: in-depth inspection and exploitability analysis of Spectre disclosure gadgets☆48Updated 2 months ago
- Kernel Address Space Layout Derandomization (KASLD) - A collection of various techniques to infer the Linux kernel base virtual address a…☆432Updated 10 months ago
- 0day VirtualBox 6.1.2 Escape for RealWorld CTF 2020/2021 CVE-2021-2119☆139Updated 4 years ago
- ☆23Updated last year
- Proof-of-concept implementation for the paper "Osiris: Automated Discovery of Microarchitectural Side Channels" (USENIX Security'21)☆56Updated 3 years ago
- Binarly Vulnerability Research Advisories☆170Updated 2 months ago
- ☆94Updated 2 years ago
- The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303…☆135Updated 3 years ago
- A de-socketing library for fuzzing.☆140Updated last week
- Processor fuzzer targeting the Armv8-A ISA☆58Updated 2 years ago
- Binary exploitation by confusing the unwinder☆59Updated last year
- Vulnerability research notes for VirtualBox and QEMU. Contains debug environment setup notes, a PoC template, exploit primitive notes, an…☆182Updated 11 months ago
- Simple script to find kernel objects of a certain size in the Linux kernel☆107Updated 2 years ago
- Curated collection of resources, examples and scripts for Linux kernel devs, researchers and hobbyists.☆54Updated 2 years ago
- Explore a live Linux kernel's memory using GDB☆113Updated 2 years ago
- RetSpill: Igniting User-Controlled Data to Burn Away Linux Kernel Protections☆55Updated 10 months ago
- Linux Kernel Fuzzer Corpus☆132Updated this week