Skip to content
KitploitKITPLOIT
أدواتالمدونة
إرسال
أدواتالمدونة
إرسال

أدوات الاختراق واختبار الاختراق والأمن السيبراني لترسانتك الأمنية!

Kitploit هو دليل لأدوات الاختراق والأمن السيبراني واختبار الاختراق. اكتشف آخر تحديثات المشاريع للعثور على الثغرات وتحليل الأنظمة وأتمتة الاختبارات وتعزيز أمنك.

··الخلاصات·اتصال·الخصوصية·© 2026 Kitploit

دليل الأدوات

الفئات

عرض جميع الفئات
Loading categories
HackSysExtremeVulnerableDriver — برنامج تشغيل HackSys الشديد الضعف (HEVD) - Windows & Linux | Kitploit
أدوات/GitHubGitHub/hacksysteam/hacksysextremevulnerabledriver
تحليل الثغرات الأمنيةالتعلم والتعليماستغلال الملفات الثنائيةمختبرات وتدريب عملي
GitHubhacksysteam/hacksysextremevulnerabledriver

HackSysExtremeVulnerableDriver

برنامج تشغيل HackSys الشديد الضعف (HEVD) - Windows & Linux

عرض المستودع

الأكثر شعبية

عرض الكل →

اكتشف الأدوات الأكثر استخدامًا من قبل مجتمعنا.

استكشف جميع الأدوات

تصفح مجموعتنا من الأدوات

عرض جميع الأدوات →
مشاركة
الموقع الإلكتروني
3.1k584منذ سنة واحدةتمت المراجعة من قبل Kitploit

HackSys Extreme Vulnerable Driver

root@kitploit:~
           ooooo   ooooo oooooooooooo oooooo     oooo oooooooooo.   
           `888'   `888' `888'     `8  `888.     .8'  `888'   `Y8b  
            888     888   888           `888.   .8'    888      888 
            888ooooo888   888oooo8       `888. .8'     888      888 
            888     888   888    "        `888.8'      888      888 
            888     888   888       o      `888'       888     d88' 
           o888o   o888o o888ooooood8       `8'       o888bood8P'   

Black Hat Arsenal Appveyor Build Status GitHub all Releases Twitter Follow Mastodon Follow Discord Server

HackSys Extreme Vulnerable Driver (HEVD) هو برنامج تشغيل نواة ويندوز ضعيف عن قصد. تم تطويره لـ باحثي الأمن والمتحمسين لتحسين مهاراتهم في الاستغلال على مستوى النواة.

يقدم HEVD مجموعة من الثغرات، بدءًا من تجاوز سعة المخزن المؤقت البسيط إلى مشاكل أكثر تعقيدًا مثل الاستخدام بعد التحرير، تجاوز سعة المخزن المؤقت للمجمع، و حالات السباق. هذا يسمح للباحثين باستكشاف تقنيات الاستغلال لكل ثغرة مطبقة.

Black Hat Arsenal 2016

  • العرض التقديمي
  • الورقة البيضاء

تدوينة

  • http://www.payatu.com/hacksys-extreme-vulnerable-driver/

الاستغلالات الخارجية

  • https://github.com/wetw0rk/Exploit-Development/tree/master/HEVD-Exploits
  • https://github.com/sam-b/HackSysDriverExploits
  • https://github.com/sizzop/HEVD-Exploits
  • https://github.com/badd1e/bug-free-adventure
  • https://github.com/FuzzySecurity/HackSysTeam-PSKernelPwn
  • https://github.com/theevilbit/exploits/tree/master/HEVD
  • https://github.com/GradiusX/HEVD-Python-Solutions
  • http://pastebin.com/ALKdpDsF
  • https://github.com/Cn33liz/HSEVD-StackOverflow
  • https://github.com/Cn33liz/HSEVD-StackOverflowX64
  • https://github.com/Cn33liz/HSEVD-StackCookieBypass
  • https://github.com/Cn33liz/HSEVD-ArbitraryOverwrite
  • https://github.com/Cn33liz/HSEVD-ArbitraryOverwriteGDI
  • https://github.com/Cn33liz/HSEVD-StackOverflowGDI
  • https://github.com/Cn33liz/HSEVD-ArbitraryOverwriteLowIL
  • https://github.com/mgeeky/HEVD_Kernel_Exploit
  • https://github.com/tekwizz123/HEVD-Exploit-Solutions
  • https://github.com/FULLSHADE/Windows-Kernel-Exploitation-HEVD

التدوينات الخارجية

  • https://wetw0rk.github.io/posts/0x00-introduction-to-windows-kernel-exploitation/
  • https://wetw0rk.github.io/posts/0x00-introducci%C3%B3n-a-windows-kernel-explotaci%C3%B3n/
  • https://wetw0rk.github.io/posts/0x01-killing-windows-kernel-mitigations/
  • https://wetw0rk.github.io/posts/0x01-mat%C3%A1ndo-windows-kernel-mitigaciones/
  • https://wetw0rk.github.io/posts/0x02-introduction-to-windows-kernel-uafs/
  • https://wetw0rk.github.io/posts/0x02-introducci%C3%B3n-a-windows-kernel-uafs/
  • https://wetw0rk.github.io/posts/0x03-approaching-the-modern-windows-kernel-heap/
  • https://wetw0rk.github.io/posts/0x03-acerc%C3%A1ndose-al-heap-moderno-del-windows-kernel/
  • https://wetw0rk.github.io/posts/0x04-writing-what-where-in-the-kernel/
  • https://wetw0rk.github.io/posts/0x04-escribiendo-que-donde-en-el-kernel/
  • https://wetw0rk.github.io/posts/0x05-introduction-to-windows-kernel-type-confusion-vulnerabilities/
  • https://wetw0rk.github.io/posts/0x05-introducci%C3%B3n-a-windows-kernel-type-confusion-vulnerabilidades/
  • https://wetw0rk.github.io/posts/0x06-approaching-modern-windows-kernel-type-confusions/
  • https://wetw0rk.github.io/posts/0x06-acerc%C3%A1ndose-a-windows-kernel-type-confusions-modernos/

المؤلف

أشفق أنصاري

ashfaq[at]hacksys[dot]io

مدونة | @HackSysTeam

HackSys Inc

https://hacksys.io/

لقطات الشاشة

لافتة برنامج التشغيل

المساعدة

الاستغلال

طباعة تصحيح برنامج التشغيل

الثغرات المطبقة

  • كتابة NULL
  • الجلب المزدوج
  • تجاوز سعة المخزن المؤقت
    • المكدس
    • Stack GS
    • NonPagedPool
    • NonPagedPoolNx
    • PagedPoolSession
  • الاستخدام بعد التحرير
    • NonPagedPool
    • NonPagedPoolNx
  • الخلط بين الأنواع
  • تجاوز سعة العدد الصحيح
    • تجاوز سعة حسابي
  • الكشف عن الذاكرة
    • NonPagedPool
    • NonPagedPoolNx
  • الزيادة التعسفية
  • الكتابة التعسفية
  • إلغاء الإشارة إلى مؤشر فارغ
  • ذاكرة غير مهيأة
    • المكدس
    • NonPagedPool
  • الوصول غير الآمن لموارد النواة

بناء برنامج التشغيل

  1. تثبيت Visual Studio 2017
  2. تثبيت Windows Driver Kit
  3. قم بتشغيل أداة بناء برنامج التشغيل المناسبة Build_HEVD_Vulnerable_x86.bat أو Build_HEVD_Vulnerable_x64.bat

التحميل

إذا كنت لا ترغب في بناء HackSys Extreme Vulnerable Driver من المصدر، يمكنك تنزيل الملفات القابلة للتنفيذ المُعدة مسبقًا لأحدث إصدار:

https://github.com/hacksysteam/HackSysExtremeVulnerableDriver/releases

تثبيت برنامج التشغيل

استخدم OSR Driver Loader لتثبيت HackSys Extreme Vulnerable Driver

الاختبار

تم اختبار HackSys Extreme Vulnerable Driver والاستغلالات الخاصة به على Windows 7 SP1 x86 و Windows 10 x64

الجلسات المقدمة

  • استغلال نواة ويندوز 1
  • استغلال نواة ويندوز 2
  • استغلال نواة ويندوز 3
  • استغلال نواة ويندوز 4
  • استغلال نواة ويندوز 5
  • استغلال نواة ويندوز 6
  • استغلال نواة ويندوز 7

ورش العمل المقدمة

  • استغلال نواة ويندوز هوملا بونه
  • استغلال نواة ويندوز هوملا مومباي

HEVD لنظام لينكس

لافتة برنامج تشغيل HEVD للينكس

مثبت برنامج تشغيل HEVD للينكس

اختبارات IOCTL لبرنامج تشغيل HEVD للينكس

سجل IOCTL لبرنامج تشغيل HEVD للينكس

الرخصة

يرجى الاطلاع على ملف LICENSE للحصول على معلومات الإذن

إرشادات المساهمة

يرجى الاطلاع على ملف CONTRIBUTING.md لإرشادات المساهمة

المهام المعلقة وتقارير الأخطاء

يرجى تقديم أي طلب تحسين أو تقرير خطأ عبر متتبع المشكلات GitHub على العنوان التالي: https://github.com/hacksysteam/HackSysExtremeVulnerableDriver/issues

الإشادات

شكرًا لهؤلاء الأشخاص الرائعين: 🎉


HackSys Inc

تنزيل الأداة
  • https://github.com/w4fz5uck5/3XPL01t5/tree/master/OSEE_Training
  • https://wetw0rk.github.io/posts/0x07-introduction-to-windows-kernel-race-conditions/
  • https://wetw0rk.github.io/posts/0x07-introducci%C3%B3n-a-windows-kernel-race-conditions/
  • https://wetw0rk.github.io/posts/0x08-modern-windows-kernel-race-conditions/
  • https://wetw0rk.github.io/posts/0x08-race-conditions-moderno-del-windows-kernel/
  • https://wetw0rk.github.io/posts/0x09-return-of-the-stack-overflow/
  • https://wetw0rk.github.io/posts/0x09-el-regreso-del-stack-overflow/
  • http://niiconsulting.com/checkmate/2016/01/windows-kernel-exploitation/
  • http://samdb.xyz/2016/01/16/intro_to_kernel_exploitation_part_0.html
  • http://samdb.xyz/2016/01/17/intro_to_kernel_exploitation_part_1.html
  • http://samdb.xyz/2016/01/18/intro_to_kernel_exploitation_part_2.html
  • http://samdb.xyz/2017/06/22/intro_to_kernel_exploitation_part_3.html
  • https://sizzop.github.io/2016/07/05/kernel-hacking-with-hevd-part-1.html
  • https://sizzop.github.io/2016/07/06/kernel-hacking-with-hevd-part-2.html
  • https://sizzop.github.io/2016/07/07/kernel-hacking-with-hevd-part-3.html
  • https://sizzop.github.io/2016/07/08/kernel-hacking-with-hevd-part-4.html
  • https://www.fuzzysecurity.com/tutorials/expDev/14.html
  • https://www.fuzzysecurity.com/tutorials/expDev/15.html
  • https://www.fuzzysecurity.com/tutorials/expDev/16.html
  • https://www.fuzzysecurity.com/tutorials/expDev/17.html
  • https://www.fuzzysecurity.com/tutorials/expDev/18.html
  • https://www.fuzzysecurity.com/tutorials/expDev/19.html
  • https://www.fuzzysecurity.com/tutorials/expDev/20.html
  • http://dokydoky.tistory.com/445
  • https://hshrzd.wordpress.com/2017/05/28/starting-with-windows-kernel-exploitation-part-1-setting-up-the-lab/
  • https://hshrzd.wordpress.com/2017/06/05/starting-with-windows-kernel-exploitation-part-2/
  • https://hshrzd.wordpress.com/2017/06/22/starting-with-windows-kernel-exploitation-part-3-stealing-the-access-token/
  • https://osandamalith.com/2017/04/05/windows-kernel-exploitation-stack-overflow/
  • https://osandamalith.com/2017/06/14/windows-kernel-exploitation-arbitrary-overwrite/
  • https://osandamalith.com/2017/06/22/windows-kernel-exploitation-null-pointer-dereference/
  • http://dali-mrabet1.rhcloud.com/windows-kernel-exploitation-arbitrary-memory-overwrite-hevd-challenges/
  • https://blahcat.github.io/2017/08/31/arbitrary-write-primitive-in-windows-kernel-hevd/
  • https://klue.github.io/blog/2017/09/hevd_stack_gs/
  • https://glennmcgui.re/introduction-to-windows-kernel-exploitation-pt-1/
  • https://glennmcgui.re/introduction-to-windows-kernel-driver-exploitation-pt-2/
  • https://kristal-g.github.io/2021/02/07/HEVD_StackOverflowGS_Windows_10_RS5_x64.html
  • https://kristal-g.github.io/2021/02/20/HEVD_Type_Confusion_Windows_10_RS5_x64.html
  • https://wafzsucks.medium.com/hacksys-extreme-vulnerable-driver-arbitrary-write-null-new-solution-7d45bfe6d116
  • https://wafzsucks.medium.com/how-a-simple-k-typeconfusion-took-me-3-months-long-to-create-a-exploit-f643c94d445f
  • https://mdanilor.github.io/posts/hevd-0/
  • https://mdanilor.github.io/posts/hevd-1/
  • https://mdanilor.github.io/posts/hevd-2/
  • https://mdanilor.github.io/posts/hevd-3/
  • https://mdanilor.github.io/posts/hevd-4/