Saar Amar's starred repositories

pwntools

CTF framework and exploit development library

Language:PythonLicense:NOASSERTIONStargazers:12108Issues:288Issues:1056

ipwndfu

open-source jailbreaking tool for many iOS devices

Language:PythonLicense:GPL-3.0Stargazers:7094Issues:378Issues:279

pcileech

Direct Memory Access (DMA) Attack Software

Language:CLicense:AGPL-3.0Stargazers:4998Issues:148Issues:285

PongoOS

pongoOS

Language:CLicense:NOASSERTIONStargazers:2506Issues:266Issues:95

security-research-pocs

Proof-of-concept codes created as part of security research done by Google Security Team.

Language:C++License:Apache-2.0Stargazers:1861Issues:172Issues:0

snmalloc

Message passing based allocator

Language:C++License:MITStargazers:1577Issues:39Issues:121

MSRC-Security-Research

Security Research from the Microsoft Security Response Center (MSRC)

Language:PythonLicense:CC-BY-4.0Stargazers:1324Issues:192Issues:9

vmware_escape

VMware Escape Exploit before VMware WorkStation 12.5.5

pcileech-fpga

FPGA modules used together with the PCILeech Direct Memory Access (DMA) Attack Software

linux-m1

Linux kernel source tree

Language:CLicense:NOASSERTIONStargazers:874Issues:52Issues:0

s6_pcie_microblaze

PCI Express DIY hacking toolkit for Xilinx SP605. This repository is also home of Hyper-V Backdoor and Boot Backdoor, check readme for links and info

Language:CStargazers:739Issues:49Issues:0

ctf-tasks

An archive of low-level CTF challenges developed over the years

Language:PythonLicense:Apache-2.0Stargazers:606Issues:30Issues:0

applegpu

Apple G13 GPU architecture docs and tools

Language:HTMLLicense:BSD-3-ClauseStargazers:549Issues:22Issues:17

shadow

jemalloc heap exploitation framework

Language:PythonLicense:NOASSERTIONStargazers:447Issues:47Issues:19

win32k-bugs

Dump of win32k POCs for bugs I've found

winipt

The Windows Library for Intel Process Trace (WinIPT) is a project that leverages the new Intel Processor Trace functionality exposed by Windows 10 Redstone 5 (1809), through a set of libraries and a command-line tool.

Language:CLicense:BSD-2-ClauseStargazers:365Issues:29Issues:12

Simpleator

Simpleator ("Simple-ator") is an innovative Windows-centric x64 user-mode application emulator that leverages several new features that were added in Windows 10 Spring Update (1803), also called "Redstone 4", with additional improvements that were made in Windows 10 October Update (1809), aka "Redstone 5".

psychicpaper

iOS <13.5 sandbox escape/entitlement 0day

Language:CLicense:MPL-2.0Stargazers:330Issues:20Issues:5

blanket

CVE-2018-4280: Mach port replacement vulnerability in launchd on iOS 11.2.6 leading to sandbox escape, privilege escalation, and codesigning bypass.

PS4-4.55-Kernel-Exploit

A fully implemented kernel exploit for the PS4 on 4.55FW

hdk

(unofficial) Hyper-V® Development Kit

Language:CLicense:NOASSERTIONStargazers:215Issues:19Issues:1

libkrw

Lib kernel r/w

Language:CLicense:MITStargazers:191Issues:10Issues:1

LiveCloudKd

Hyper-V Research is trendy now

Language:CLicense:GPL-3.0Stargazers:171Issues:11Issues:3

GuardMon

Hypervisor based tool for monitoring system register accesses.

Language:C++License:MITStargazers:141Issues:20Issues:9

cheriot-rtos

The RTOS components for the CHERIoT research platform

Language:C++License:MITStargazers:131Issues:14Issues:46

l1tf-poc

L1TF (Foreshadow) VM guest to host memory read PoC

Language:CLicense:MITStargazers:112Issues:8Issues:2

i9300_emmc_toolbox

Samsung Galaxy S3 GT-I9300 eMMC toolbox

Language:CLicense:GPL-3.0Stargazers:98Issues:17Issues:18

cheriot-ibex

cheriot-ibex is a RTL implementation of CHERIoT ISA based on LowRISC's Ibex core.

Language:SystemVerilogLicense:Apache-2.0Stargazers:78Issues:15Issues:39

cheriot-sail

Sail code model of the CHERIoT ISA

Language:TeXLicense:NOASSERTIONStargazers:34Issues:10Issues:36