xairy / dma-attacks
Materials for my DMA attacks talk and a collection of related links
☆48Updated 11 months ago
Alternatives and similar repositories for dma-attacks:
Users that are interested in dma-attacks are comparing it to the libraries listed below
- binary ninja related code☆35Updated last month
- Companion to the "Introduction to VirtualBox security research" Blog Post☆29Updated 3 years ago
- ☆21Updated 3 years ago
- Breaking Secure Boot with SMM☆40Updated 3 years ago
- Intel Management Engine JTAG Proof of Concept - 2022 Instructions☆33Updated 2 years ago
- breaking decompilers☆16Updated this week
- A migration for the page table entry based side-channel attack agains SGX enclaves.☆16Updated 3 months ago
- How to use LLVM passes☆31Updated 2 years ago
- Tool to extract the kallsyms (System.map) from a memory dump☆26Updated last year
- ASPFuzz: Fuzzing the AMD SP's ROM bootloader with LibAFL using QEMU full-system emulation☆27Updated 2 years ago
- Symbolic execution for RISC-V machine code based on the formal LibRISCV ISA model☆46Updated 3 months ago
- A simple hypervisor demonstrating the use of the Intel VT-rp (redirect protection) technology.☆106Updated last year
- Ghidra analyzer for UEFI firmware.☆18Updated last year
- nanoMIPS IDA plugin☆67Updated 3 years ago
- Full-VM taint analysis with Xen, Intel(R) Processor Trace and Triton.☆40Updated last year
- Tutorial to write qemu plugins☆33Updated 7 years ago
- kAFL Fuzzer☆33Updated 2 months ago
- A dynamically loadable virtual-machine based rootkit designed for Linux Kernel v5.13.0 using AMD-V (SVM).☆29Updated 2 years ago
- Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)☆36Updated last year
- Artifact of "Indirector: High-Precision Branch Target Injection Attacks Exploiting the Indirect Branch Predictor" [USENIX Security 2024]☆62Updated 9 months ago
- Decode machine code into VEX IR and translate into LLVM IR☆27Updated 5 years ago
- Intel Hardware Trace Library - Kernel Space Componment☆66Updated 2 weeks ago
- Simple PoC for a bootkit written as a UEFI Option ROM Driver☆10Updated 2 years ago
- Linux kernel branches for confidential compute research☆17Updated last month
- Uncovering Container Confusion in the Linux Kernel☆43Updated last year
- ☆81Updated 2 years ago
- Binary Ninja plugin to automate the process of generating pseudo-C code, running Semgrep over the pseudo-C, and presenting the results.☆31Updated 3 months ago
- A plugin for Binary Ninja to query the Symgrate2 database.☆13Updated 3 years ago
- ☆36Updated last year
- ☆18Updated 3 years ago