xforcered / Windows_MSKSSRV_LPE_CVE-2023-36802
LPE exploit for CVE-2023-36802
☆22Updated last year
Alternatives and similar repositories for Windows_MSKSSRV_LPE_CVE-2023-36802:
Users that are interested in Windows_MSKSSRV_LPE_CVE-2023-36802 are comparing it to the libraries listed below
- HEVD Exploit: BufferOverflowNonPagedPoolNx on Windows 10 22H2 - Escalating from Low Integrity to SYSTEM via Aligned Chunk Confusion☆51Updated this week
- Minifilter Callback Patching Proof-of-Concept☆67Updated 2 years ago
- A PoC for adding NtContinue to CFG allowed list in order to make Ekko work in a CFG protected process☆99Updated 2 years ago
- Slides for COM Hijacking AV/EDR Talk on 38c3☆73Updated 3 months ago
- Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)☆99Updated last year
- A C++ PoC implementation for enumerating Windows Fibers directly from memory☆18Updated 11 months ago
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆71Updated this week
- ☆42Updated 3 weeks ago
- A Poc on blocking Procmon from monitoring network events☆101Updated 2 years ago
- This repo contains EXPs about Vulnerable Windows Driver☆39Updated 11 months ago
- Analysis of the vulnerability☆51Updated last year
- Windows KASLR bypass using prefetch side-channel☆89Updated last year
- ForsHops☆41Updated last month
- Enabled / Disable LSA Protection via BYOVD☆67Updated 3 years ago
- Interceptor is a kernel driver focused on tampering with EDR/AV solutions in kernel space☆123Updated 2 years ago
- Proof-of-Concept for CVE-2024-26218☆51Updated 11 months ago
- Windows AppLocker Driver (appid.sys) LPE☆55Updated 8 months ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆26Updated last year
- ☆68Updated 2 years ago
- ☆86Updated 8 months ago
- Finding Truth in the Shadows☆89Updated 2 years ago
- CVE-2024-40431+CVE-2022-25479 chain for EOP(DATA ONLY ATTACK)☆44Updated 6 months ago
- ☆108Updated 2 years ago
- Boilerplate to develop raw and truly Position Independent Code (PIC).☆51Updated 3 months ago
- ☆115Updated 2 years ago
- A more reliable way of resolving syscall numbers in Windows☆49Updated last year
- PoC exploit for HP Hardware Diagnostic's EtdSupp driver☆50Updated last year
- Files for http://blog.deniable.org/posts/windows-callbacks/☆73Updated 3 years ago
- Win32 keylogger that supports all (non-ime using) languages correctly☆49Updated last year
- Exploiting the KsecDD Windows driver through Server Silos☆66Updated 5 months ago