CVE-2022-21894 icon indicating copy to clipboard operation
CVE-2022-21894 copied to clipboard

Provided payload source

Open drsuser opened this issue 2 years ago • 1 comments

Hi, is there source code available for the payload provided in the 19041 iso with the hvloader exploit? (the one that prints a message to the screen) I came across this one but obviously the offsets are going to be all different.

drsuser avatar Mar 14 '23 16:03 drsuser

no, because I lost the src (or rather, modified it to dump bitlocker keytable and didn't keep the original).

if I remember correctly it just calls BlDisplayPrintString anyway, some reversing should let you figure out the offsets for th1 hvloader used there.

Wack0 avatar Mar 14 '23 18:03 Wack0