CrackerCat / sysret

Windows Kernel Intel x64 SYSRET Vulnerability Exploit

Home Page:repret.wordpress.com

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Windows Kernel Intel x64 SYSRET Vulnerability Exploit + Kernel Code Signing Bypass Bonus

The shellcode disables kernel Code Signing and will grant NT SYSTEM privilege to specified Application or already running process (PID). exploit successfully tested on Windows 7 SP0/1 (x64) and Windows 2008 R2 SP1 (x64).

-Shahriyar Jalayeri ( @ponez )

About

Windows Kernel Intel x64 SYSRET Vulnerability Exploit

repret.wordpress.com


Languages

Language:C 92.4%Language:C++ 5.2%Language:Objective-C 1.5%Language:CMake 0.9%Language:Assembly 0.0%