UK

Sam Brown

Expert
@sam-b

windows_kernel_address_leaks. Examples of leaking Kernel Mode information from User Mode on Windows

645

windows_kernel_resources. Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits

421

windbg-plugins. Any useful windbg plugins I've written.

117

HashData. A command line Hash Identifying tool.

101

HackSysDriverExploits. C++

49

CVE-2014-4113. Trigger and exploit code for CVE-2014-4113

41

windows_syscalls_dumper. A dirty IDAPython script to dump windows system call number/name pairs as JSON

36

z3-stuff. z3 scripts and ctf challenge solutions.

25

pilloc. A pin tool to visualise heap operations

21

ida-scripts. Dumping ground for whatever IDA Pro scripts I write

16

PSOD. A simple Windows driver which crashes the system and turns the BSOD pink

16

win-driver-tools. A couple of little tools I've made for working with Windows Drivers

14

recon-ng-bt_lookup. A BT lookup module for recon-ng

7

intro-to-kernel-exploitation. C++

7

littleos. A little os built using the littleosbook

6

SimpleBrowser. A simple browser written in python

3

win_driver_plugin. A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.

3

sam-b.github.io. Ruby

3

gchq_can_you_crack_it. A VM implemented in rust for gchqs "Can you crack it?" challenge from 2011

3

win_update_permanence_swap. Modifies the permanence field in windows update MUM files to make updates permanent/removable

2

cs344. Introduction to Parallel Programming class code

2

DataSearch. A simple search engine in python

2

owasp-mstg. The Mobile Security Testing Guide (MSTG) is a comprehensive manual for mobile app security testing and reverse engineering.

1

CVE-2016-7255. An exploit for CVE-2016-7255 on Windows 7/8/8.1/10(pre-anniversary) 64 bit

1

crib-dragger. Asimple script for crib dragging against many-time pads I preiodically use for CTFs

1

ctf-stuff. Python

1
26
Apply