Skip to content

elusivethreat/NVR0

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 
 
 
 
 

Repository files navigation

NVR0

Nvidia Driver poc. This was developed last year when I was doing research and learning more about BYOVD, but the certificate was recently revoked so it's now being "archived" here for research and training purposes.

Exploit Primitives

  • Abuses MmMapIoSpace and MmGetPhysicalAddress

Unique Requirements

  • Unique IOCTL to reach ioctl_dispatcher function
  • CmdBuff structure that stores CMD type, and args for different APIs etc..
  • Buffer passed from usermode must contain a unique hash at a specific offset that uses 2 custom seeds to generate.

About

Nvidia Driver poc

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors

Languages