Giter Site home page Giter Site logo

ascotbe / kernelhub Goto Github PK

View Code? Open in Web Editor NEW
2.8K 80.0 669.0 60.34 MB

:palm_tree:Linux、macOS、Windows Kernel privilege escalation vulnerability collection, with compilation environment, demo GIF map, vulnerability details, executable file (提权漏洞合集)

Home Page: http://kernelhub.ascotbe.com/

License: GNU Affero General Public License v3.0

C++ 3.36% C 77.52% Assembly 0.21% Ruby 0.19% C# 16.00% HTML 0.10% Batchfile 0.01% PowerShell 1.32% Python 1.18% Makefile 0.01% CMake 0.05% Rust 0.06% YARA 0.01%
exploits cve cve-2021-33739 cve-2021-26868 cve-2021-36934 cve-2021-40444 cve-2021-40449 cve-2021-42287 cve-2021-42278 cve-2021-34486

kernelhub's Introduction

哈喽大家好:wave:, 这里是钰棽. 由于左边的菜鸡正在学习所以让我介绍他:no_mouth:

👨‍💻他现在干的事情:

  • hi学习二进制漏洞
  • hi研究木马相关技术
  • hi他啥都想学(啥也不会的菜鸡
  • hi欢迎找我开黑
  • hi公众号:瓜皮大笨蛋

💚他感兴趣的:

  • hi宇宙、天体

Let's connect and chat! 📨

Twitter     Telegram     Steam     Weibo    

Open to anything under the stars ✨

Things to know about me!

Github Stats By Anurag

Github Stats By Anurag

kernelhub's People

Contributors

ascotbe avatar ycdxsb avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

kernelhub's Issues

README.md中网站错误

在 README.md 和 README.CN.md两个文档中的

参考项目&网站(Reference project & website)

中的“CVE”指向错误。

原因:未使用https/http协议前缀导致错误识别成本目录下的子链接

补充几个缺失的CVE及其exp

您好,我对比了一下Kernel Hub中已有的2019-2021年exp和我爬取到的exp,发现缺失了下面几个win32k的exp,对应的CVE描述和exp链接如下:

CVE-2020-1054

An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1143.

CVE-2020-1034

An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'.

CVE-2020-0668

An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0669, CVE-2020-0670, CVE-2020-0671, CVE-2020-0672.

CVE-2019-1132

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.

CVE-2019-0808

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0797.

CVE-2019-0623

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.

关于已经复现的exp

readme中有提及那些cve没有复现,是否可以在readme中列出那些cve(exp)已经复现通过了,包括在哪些平台复现了.

[BUG] A space causes the windows platform to fail to checkout

When I clone this repo

PS G:\windows> git clone https://github.com/Ascotbe/Kernelhub.git
Cloning into 'Kernelhub'...
remote: Enumerating objects: 1563, done.
remote: Counting objects: 100% (1563/1563), done.
remote: Compressing objects: 100% (976/976), done.
remote: Total 1563 (delta 627), reused 1433 (delta 499), pack-reused 0
Receiving objects: 100% (1563/1563), 28.95 MiB | 1.81 MiB/s, done.
Resolving deltas: 100% (627/627), done.
error: invalid path 'CVE-2014-6321 /README.md'    // LOOK AT THIS LINE
fatal: unable to checkout working tree
warning: Clone succeeded, but checkout failed.
You can inspect what was checked out with 'git status'
and retry with 'git restore --source=HEAD :/

When I checkout manually

PS G:\windows\Kernelhub> git checkout HEAD
error: invalid path 'CVE-2014-6321 /README.md'

It looks like an unexpected space in the path causing this problem.

Snipaste_2020-11-24_21-10-30

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.