This repository contains an exploit for the BufferOverflowNonPagedPoolNx vulnerability in HackSys Extreme Vulnerable Driver (HEVD).
The exploit targets Windows 10 Version 22H2 (OS Build 19045.3930) and demonstrates a technique to achieve privilege escalation from a low-integrity process to SYSTEM.
The exploit leverages the BufferOverflowNonPagedPoolNx vulnerability to create a “ghost chunk” through Aligned Chunk Confusion in the NonPagedPoolNx region. This ghost chunk is then manipulated to achieve arbitrary read and write primitives, which are subsequently used to elevate privileges.
Key techniques:
This exploit was tested in the following environment:
For more information click here.
For official releases, refer to Dependency Track Docs >> Changelogs for information about improvements and…
For official releases, refer to Dependency Track Docs >> Changelogs for information about improvements and…
For official releases, refer to Dependency Track Docs >> Changelogs for information about improvements and…
For official releases, refer to Dependency Track Docs >> Changelogs for information about improvements and…
HikvisionExploiter is a Python-based utility designed to automate exploitation and directory accessibility checks on Hikvision…
RedFlag leverages AI to determine high-risk code changes. Run it in batch mode to scope…