
chipsec
Platform Security Assessment Framework

Platform Security Assessment Framework


Script for searching the extracted firmware file system for goodies!

Intel, AMD, VIA & Freescale Microcode Extraction Tool

Meltdown Exploit / Proof-of-concept / checks whether system is affected by Variant 3: rogue data cache load (CVE-2017-5754), a.k.a MELTDOWN.

A list of public attacks on BitLocker

Proof-of-concept demonstrating RF replay attack on Honda's remote keyless entry system (CVE-2022-27254) using HackRF One and GNU Radio for signal…

Fuzzes CPU implementations by generating test inputs from software proxies, then executes them on real hardware to detect microarchitecture defects…

baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability

A very very very very very very very long interrupt

TPM Genie is an I2C bus interposer for discrete Trusted Platform Modules

Downgrade attack for CVE-2025-48804

Platform security assessment tool for dumping and analyzing UEFI/SMM registers, PCI config space, physical memory, SPI flash, and S3 bootscripts with…

The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303.

CVE-2022-31705 (Geekpwn 2022 Vmware EHCI OOB) POC

OSDP attack tool (and the Elvish word for friend)

TPM vulnerability checking tool for CVE-2018-6622. This tool will be published at Black Hat Asia 2019 and Black Hat Europe 2019

This tool allows to check speculative execution side-channel attacks that affect many modern processors and operating systems designs. CVE-2017-5754…