hacksysteam / HackSysExtremeVulnerableDriver

HackSys Extreme Vulnerable Driver (HEVD) - Windows & Linux
https://hacksys.io
GNU General Public License v3.0
2.48k stars 533 forks source link

Type confusion x64 #18

Closed m0t closed 7 years ago

m0t commented 7 years ago

Thought it'd be nice to make this possible on x64:

** HACKSYS_EVD_IOCTL_TYPE_CONFUSION ** [+] Pool Tag: 'kcaH' [+] Pool Type: NonPagedPool [+] Pool Size: 0x10 [+] Pool Chunk: 0xFFFFC48C45D38D90 [+] UserTypeConfusionObject: 0x000002C9012CC650 [+] KernelTypeConfusionObject: 0xFFFFC48C45D38D90 [+] KernelTypeConfusionObject Size: 0x10 [+] KernelTypeConfusionObject->ObjectID: 0x4141414141414141 [+] KernelTypeConfusionObject->ObjectType: 0x4141414141414141 [+] Triggering Type Confusion [+] KernelTypeConfusionObject->Callback: 0x4141414141414141 [+] Calling Callback [-] Exception Code: 0xC0000005 ** HACKSYS_EVD_IOCTL_TYPE_CONFUSION **

hacksysteam commented 7 years ago

@m0t Thank you very much for the pull request. Merging it now.