Saturday, February 19, 2011

IOCTL Fuzzer v1.2 – Scan for venerabilities in Windows

IOCTL Fuzzer is a tool designed to automate the task of searching vulnerabilities in Windows kernel drivers by performing fuzz tests on them.
The fuzzer’s own driver hooks NtDeviceIoControlFile in order to take control of all IOCTL requests throughout the system.
While processing IOCTLs, the fuzzer will spoof those IOCTLs conforming to conditions specified in the configuration file. A spoofed IOCTL is identical to the original in all respects except the input data, which is changed to randomly generated fuzz.
IOCTL Fuzzer works on Windows XP, 2003 Server, Vista, Windows 7 and 2008 Server.




  1. I think your anti-virus will raise alarm since it uses dll injection as well as hooking. Anti-virus program should be disabled first, don't you think so.

  2. It does use dll but since the mode of scanning is read only type ie,its not making any modifications so scanning with it will not be a trouble for anti viruses . This is also a type of anti virus provided its build for a special purpose.