byovd
Here are 31 public repositories matching this topic...
BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055,).
-
Updated
Feb 24, 2026 - Rust
🤖 Kill The Protected Process 🤖
-
Updated
May 29, 2024 - Rust
PoC exploit for the vulnerable WatchDog Anti-Malware driver (amsdk.sys) – weaponized to kill protected EDR/AV processes via BYOVD.
-
Updated
Sep 11, 2025 - C++
KslDump — Why bring your own knife when Defender already left one in the kitchen?
-
Updated
Mar 17, 2026 - Python
「💀」Proof of concept on BYOVD attack
-
Updated
Dec 7, 2024 - C++
BYOVD hunter to help prioritize windows drivers worth manual analysis
-
Updated
Aug 19, 2025 - Rust
DSE & PG bypass via BYOVD attack
-
Updated
Jul 12, 2025 - C++
PoC exploit for the vulnerable (eb.sys or UnknownKiller.sys) – weaponized to kill protected EDR/AV processes via BYOVD.
-
Updated
Feb 27, 2026 - C
「
-
Updated
Dec 7, 2024 - C++
📟 a tiny code that performs kernel-mode read/write using CVE-2023-38817.
-
Updated
Mar 28, 2025 - C++
Some basic info, resources, and code snippets about windows kernel exploitation
-
Updated
Jul 18, 2025 - Python
vulnerable drivers for windows machines.
-
Updated
Mar 18, 2026
A BYOVD technique abuse tool
-
Updated
Feb 27, 2026 - Rust
A simple PoC demonstrating the vulnerability in the ThrottleStop.sys driver, showcasing arbitrary physical memory read and write capabilities, as well as virtual-to-physical address translation using Superfetch.
-
Updated
Jan 15, 2026 - Rust
Improve this page
Add a description, image, and links to the byovd topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the byovd topic, visit your repo's landing page and select "manage topics."