driver Vulnerable Drivers - Revisited In this post, I'll explore exploiting another driver: wsftprm.sys, but this time I've only given myself the target and no additional information in order to learn the enumeration and discovery techniques to approach driver N-day research.
am i safe Vulnerable Drivers In this post I dive into the reverse engineering and abuse of vulnerable kernel drivers and how they are used to kill defensive solutions such as EDRs and AVs, using the example of aswArPot.sys, an anti-rootkit driver from Avast.