yardenshafir
yardenshafir
CVE-2020-1034
PoC demonstrating the use of cve-2020-1034 for privilege escalation
PoolViewer
An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.
WinDbg_Scripts
Useful scripts for WinDbg using the debugger data model
CallbackObjectAnalyzer
Dumps information about all the callback objects found in a dump file and the functions registered for them
cet-research
A collection of tools, source code, and papers researching Windows' implementation of CET.
conference_talks
Slides from various conference talks
DpcWait
Driver demonstrating how to register a DPC to asynchronously wait on an object
IoRingReadWritePrimitive
Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2
IoRing_Demos
A repository for I/O ring demos, use cases and performance testing on Windows