zeze-zeze / CYBERSEC2023-BYOVD-Demo

29 stars 6 forks source link

BSOD #1

Open NUL0x4C opened 1 year ago

NUL0x4C commented 1 year ago

hey,

I was not able to successfully execute the exploit on my Windows 10 VM (V22h2 - 19045.2006). And I got BSOD directly after executing BYOVD.exe. Is this project only compatible with the 1909 version?

Note: The binaries I used are from within your repo's bin folder. Plus, I would like to also mention that I didn't install the 360 TS AV.

zeze-zeze commented 1 year ago

It should work in Windows 11 22H2 (Build 22621.525). If you are using the current master branch, it is expected to load RTCore64.sys and malicious.sys successfully. However, because this project doesn't restore the DSE flag, the system would go unstable.