Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-28229 PoC — Microsoft Windows CNG Key Isolation Service 安全漏洞

Source
Associated Vulnerability
Title:Microsoft Windows CNG Key Isolation Service 安全漏洞 (CVE-2023-28229)
Description:Microsoft Windows是美国微软(Microsoft)公司的一套个人设备使用的操作系统。 Microsoft Windows CNG Key Isolation Service存在安全漏洞。以下产品和版本受到影响:Windows 10 Version 20H2 for ARM64-based Systems,Windows 11 version 21H2 for x64-based Systems,Windows 11 version 21H2 for ARM64-based Systems,
Readme
# CVE-2023-28229

Windows CNG KeyIso RPC EoP/SBX   
Discovered by: [@k0shl](https://twitter.com/KeyZ3r0)   
Reference: https://whereisk0shl.top/post/isolate-me-from-sandbox-explore-elevation-of-privilege-of-cng-key-isolation

![](gg.png)

If compilation fails, rename `rpc.h` to something else because I didn't realise `rpc.h` is a standard include in Windows!
File Snapshot

[4.0K] /data/pocs/95e6fd1f9a1bf8b97db38165cf88c9998bf358ee ├── [4.0K] exp │   ├── [1.4K] exp.sln │   ├── [6.7K] exp.vcxproj │   ├── [1.5K] exp.vcxproj.filters │   ├── [ 168] exp.vcxproj.user │   ├── [6.4K] hax.c │   ├── [ 520] hax.h │   ├── [ 12K] keyiso.idl │   ├── [6.3K] rpc.c │   └── [1.8K] rpc.h ├── [ 39K] gg.png └── [ 361] README.md 1 directory, 11 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.