gmh5225/BYOVD
Some POCs for my BYOVD research and find some vulnerable drivers
Repository profile
Intercepting DeviceControl via WPP
Repository updates
Get generated btbd/wpp development summaries by email, or follow the weekly and monthly RSS feeds.
Sign in to subscribe by email. RSS feeds are public.
Sign in to subscribeTracked growth, recent movement, and commit velocity from stored repository snapshots.
Latest capture 2026-06-24 13:17
1 capture since 2026-06-24
Stars from baseline 0
All tracked data
Frameworks, package managers, ecosystems, and dependency manifests found during catalog scans.
Scanned 2026-06-24 13:17
Searchable topics, generated tags, and stack labels that explain where this repository fits.
Agent instructions and tool configuration paths found in the repository tree.
Nearest indexed repositories by embedding similarity.
Some POCs for my BYOVD research and find some vulnerable drivers
Proof of Concepts code for Bring Your Own Vulnerable Driver techniques
PoC exploit for the vulnerable WatchDog Anti-Malware driver (amsdk.sys) – weaponized to kill protected EDR/AV processes via BYOVD.
CVE-2022-42046 Proof of Concept of wfshbr64.sys local privilege escalation via DKOM
A proof of concept demonstrating communication via mapped shared memory structures between a user-mode process and a kernel-mode payload on Windows 10 20H2.
Spoofing the Windows 10 HDD/diskdrive serialnumber from kernel without hooking