This repository contains exploit and reverse-engineering source code regarding the Spectre-BHB/Branch History Injection vulnerability
☆121Apr 12, 2022Updated 4 years ago
Alternatives and similar repositories for bhi-spectre-bhb
Users that are interested in bhi-spectre-bhb are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Proof-of-concept implementation for the paper "Reviving Meltdown 3a" (ESORICS 2023)☆17Sep 25, 2023Updated 2 years ago
- PoC for Paper: BunnyHop Exploiting the Instruction Prefetcher (USENIX Security 2023)☆14Aug 17, 2023Updated 3 years ago
- Code repository for experiments in SpecROP paper☆13Sep 3, 2021Updated 4 years ago
- Proof of Concept of exploit against Spectre Variant 2 Vulnerability☆23May 23, 2020Updated 6 years ago
- Opening Pandora's Box: A Systematic Study of New Ways Microarchitecture can Leak Private Data☆22Oct 13, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Processor fuzzer targeting the Armv8-A ISA☆71Nov 28, 2022Updated 3 years ago
- Arbitrary Speculative Code Execution with Return Instructions☆178Jan 23, 2024Updated 2 years ago
- ☆74Mar 11, 2024Updated 2 years ago
- Fuzzer that searches for vulnerabilities like Spectre and Meltdown in CPUs☆42Dec 14, 2022Updated 3 years ago
- The open-source component of Prime+Scope, published at CCS 2021☆38Jul 18, 2023Updated 3 years ago
- Medusa Repository: Transynther tool and Medusa Attack☆26Jul 17, 2020Updated 6 years ago
- Rage Against The Machine Clear: A Systematic Analysis of Machine Clears and Their Implications for Transient Execution Attacks☆25Jun 11, 2021Updated 5 years ago
- Website and PoC collection for transient execution attacks☆205Mar 9, 2024Updated 2 years ago
- Proof-of-concept implementation for the paper "A Security RISC: Microarchitectural Attacks on Hardware RISC-V CPUs" (IEEE S&P 2023)☆89Nov 10, 2025Updated 9 months ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Revizor - Hardware fuzzing for the age of speculation☆192Aug 24, 2026Updated last week
- Proof-of-concept implementation for the paper "CacheWarp: Software-based Fault Injection using Selective State Reset" (USENIX Security 20…☆65Aug 12, 2024Updated 2 years ago
- Spectre based on Linear Address Masking☆66Dec 4, 2023Updated 2 years ago
- Open-source release of "Last-Level Cache Side-Channel Attacks Are Feasible in the Modern Public Cloud" (ASPLOS '24)☆33May 20, 2026Updated 3 months ago
- Proof-of-concept implementation for the paper "Indirect Meltdown: Building Novel Side-Channel Attacks from Transient Execution Attacks" (…☆23Sep 24, 2023Updated 2 years ago
- POC code on side channel attack, including spectre attack and meltdown; verified on the BOOMv3 (smallBoomconfig)☆15Mar 3, 2022Updated 4 years ago
- A tool for detecting Spectre vulnerabilities through fuzzing☆46Aug 25, 2021Updated 5 years ago
- ☆31Feb 20, 2024Updated 2 years ago
- Materials from the DEF CON 30 talk on PACMAN☆34Oct 28, 2022Updated 3 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Kasper: Scanning for Generalized Transient Execution Gadgets in the Linux Kernel☆62Jul 1, 2026Updated last month
- ☆44Jul 19, 2023Updated 3 years ago
- Automated test generator to detectcache side channel leakages.☆12Jul 1, 2019Updated 7 years ago
- ☆30Feb 20, 2022Updated 4 years ago
- RIDL test suite and exploits☆363Jun 9, 2020Updated 6 years ago
- Test suite containing a reproduction of all major transient-execution attacks in RISC-V and CHERI-RISC-V assembly☆17Jun 7, 2021Updated 5 years ago
- Environment with vulnerable kernel for exploitation of the TEE driver (CVE-2021-44733)☆76Dec 28, 2021Updated 4 years ago
- ☆18Nov 19, 2020Updated 5 years ago
- ☆15Sep 26, 2021Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- The code in this project demonstrates 2 novel Spectre-V4 attacks, named as out-of-place Spectre-STL and Spectre-CTL, based on the Specula…☆23Nov 23, 2023Updated 2 years ago
- Medusa Repository: Transynther tool and Medusa Attack☆20Jul 14, 2020Updated 6 years ago
- Tool for testing and finding minimal eviction sets☆110May 6, 2021Updated 5 years ago
- Training in Transient Execution and PhantomCALL, from Inception (SEC'23) Artifacts.☆41Feb 19, 2024Updated 2 years ago
- Implementation for the DIMVA'22 paper "Branch Different - Spectre Attacks on Apple Silicon"☆40Jul 29, 2022Updated 4 years ago
- InSpectre Gadget: in-depth inspection and exploitability analysis of Spectre disclosure gadgets☆60Jul 31, 2026Updated last month
- ☆14Nov 10, 2019Updated 6 years ago