TGViewer
Whitehat Lab Whitehat Lab @wh_lab · 3.17K subscribers
Post #778 796
Whitehat Lab ⚙ Bring Your Own Vulnerable Driver Коллекция PoC'ов, демонстрирующих, как уязвимые драйверы могут быть использованы для отключения AV/EDR Техника, при которой атакующий использует легитимный драйвер с действительной цифровой подписью, содержащий известную…
💻 0xM0nCrush v0.1.0

В дополнение к посту про BYOVD

Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11
The tool is a single self-contained executable. It installs the driver through the Service Control Manager, performs the kill, then stops and deletes the service, leaving no persistent artifact behind. Targets are configurable at runtime through a config file, command line, or the built-in defaults


🐱 Repo

#byovd #windows #rust #kernel

✈️ Telegram 💬 MAX
  • 👍 4
More from @wh_lab
  1. Sep 21, 2026🔄🕸 humble v1.66 Быстрый анализатор HTTP заголовков, ориентированный на безопасность В 🐧…
  2. Sep 20, 2026🙂 Лучше вкусного напитка в пятницу может быть только вкусный напиток + доклады с OFFZONE…
  3. Sep 19, 2026💻 CVE-2026-49179: Active Directory WriteSPNScript Command Injection Компонент (ntdsai.dll…
  4. Sep 18, 2026cups2root Linux LPE Interactive root shell from a local account in the lpadmin group.
  5. Sep 18, 2026⚙️ CDP Toolkit Инструмент для работы через Chrome DevTools Protocol (CDP) Beacon Object Fi…
  6. Sep 17, 2026💀 go-responder NTLMv2 hash capture tool in pure Go zero deps, single static binary. Poiso…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →