Back

Windows Kernel基础

Kernel Infrastructure

Windows 内核

0x01 双机调试配置

VMware + WinDBG

删除Printer,添加串行端口Serial Port:

image-20220112160817177

Use named pipe: \\.\pipe\com1

image-20220112174707061

启动Windows XP,找到C:\boot.ini,添加一行:

image-20220112162321874

实体机中安装WinDBG preview:

image-20220112162618854

文件-> Attack To Kernel:

image-20220112174642421

成功连接:

image-20220112174020506

image-20220112174621766

未完待续。。。

Licensed under CC BY-NC-SA 4.0
YuSec Github Blog
Built with Hugo
Theme Stack designed by Jimmy