shubham0d
Low level Security researcher. Expertise in BIOS/UEFI, Intel architecture and Hypervisor.
FreelanceBangalore
Pinned Repositories
Antivirus-Symlink-Exploit
POC for arbitary file deletion using Symlink(Symbolic links) issue present in many Antivirus software
CVE-2020-1048
POC exploit code for CVE-2020-1048(PrintDemon)
CVE-2020-1301
POC exploit for SMBLost vulnerability (CVE-2020-1301)
CVE-2021-30657
A sample POC for CVE-2021-30657 affecting MacOS
Immutable-file-linux
A small fun project to protect a file from writing using ftrace hooking.
low-level-hooker
A linux kernel funtions hooking module
ProtoVirt
An ongoing attempt to create own hypervisior from scratch in linux.
SymBlock
A windows kernel driver to Block symbolic link exploit used for privilege escalation.
Symbolic-link-exploitation
A repo to learn symbolic link exploitation.
UAC-bypass-using-dll-injection
A small project to bypass UAC in windows 10/8/7 using dll injection technique
shubham0d's Repositories
shubham0d/ProtoVirt
An ongoing attempt to create own hypervisior from scratch in linux.
shubham0d/CVE-2021-30657
A sample POC for CVE-2021-30657 affecting MacOS
shubham0d/Immutable-file-linux
A small fun project to protect a file from writing using ftrace hooking.
shubham0d/low-level-hooker
A linux kernel funtions hooking module
shubham0d/CVE-2021-28312
POC and description for CVE-2021-28312
shubham0d/smm-info-drivers
Small set of drivers to retrieve SMM related information
shubham0d/CVE-2021-30853
A sample POC to test CVE-2021-30853
shubham0d/memory-corruption-mitigations
A matrix of memory corruption mitigations
shubham0d/pci-mem-drivers
Sample drivers to access pci configuration registers
shubham0d/awesome-linux-rootkits
awesome-linux-rootkits
shubham0d/Zoom-dll-hijacking
A dll hijacking vulnerability in zoom meeting < 5.1.4. CVE-2020-9767
shubham0d/AMBAD-toolkit
Advance Malware Behaviour Analysis and Detection toolkit
shubham0d/apic-interaction-drivers
A set of small driver codes to interact and modify APIC in intel
shubham0d/bpflock
bpflock - eBPF driven security for locking and auditing Linux machines
shubham0d/CobaltStrike
CobaltStrike's source code
shubham0d/cpu-internals
Intel / AMD CPU Internals
shubham0d/CVE-2020-1472
Test tool for CVE-2020-1472
shubham0d/CVE-2020-27955
POC for CVE-2020-27955
shubham0d/injdrv
proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC
shubham0d/InsightEngineering
Hardcore Debugging
shubham0d/kedr
Main repository of KEDR project
shubham0d/Kernel-Bridge
Windows kernel hacking framework, driver template, hypervisor and API written on C++
shubham0d/linux-kernel-exploitation
A collection of links related to Linux kernel security and exploitation
shubham0d/MEAnalyzer
Intel Engine & Graphics Firmware Analysis Tool
shubham0d/Platbox
UEFI and SMM Assessment Tool
shubham0d/PoC-in-GitHub
📡 PoC auto collect from GitHub. ⚠️ Be careful Malware.
shubham0d/PoisonApple
macOS persistence tool
shubham0d/shubham0d
shubham0d/winafl_patched
A fork of AFL for fuzzing Windows binaries
shubham0d/WPBT-Builder
The simple UEFI application to create a Windows Platform Binary Table (WPBT) from the UEFI shell.