Windows Capcom.sys Kernel Execution Exploit (x64 only)

Discussion in 'News Aggregator' started by Packet Storm, 3 Oct 2016.

  1. Packet Storm

    Packet Storm Guest

    This Metasploit module abuses the Capcom.sys kernel driver's function that allows for an arbitrary function to be executed in the kernel from user land. This function purposely disables SMEP prior to invoking a function given by the caller. This has been tested on Windows 7 x64.

    Continue reading...
     

Share This Page

Loading...