
CVE-2026-29923
The pstrip64.sys kernel driver exposes an IOCTL that allows low-privileged users to map arbitrary ranges of physical memory into their own virtual…

The pstrip64.sys kernel driver exposes an IOCTL that allows low-privileged users to map arbitrary ranges of physical memory into their own virtual…

Platform security assessment tool for dumping and analyzing UEFI/SMM registers, PCI config space, physical memory, SPI flash, and S3 bootscripts with…

Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and environment…

Dumping processes using the power of kernel space !

CVE-2022-25375 - Demo exploit of RNDIS USB Gadget

Visualize the virtual address space of a Windows process on a Hilbert curve.

Searches for strings, regex, credit card numbers of magnetic stripe card tracks in a Windows process's memory space

Proof-of-concept exploit for CVE-2020-27949, demonstrating arbitrary memory read/write in macOS processes via DTrace fasttrap ioctl without elevated…

CVE-2017-13868: Information leak of uninitialized kernel heap data in XNU.

Research project related to memory address analysis