0mWindyBug / KDP-compatible-driver-loader
KDP compatible unsigned driver loader leveraging a write primitive in one of the IOCTLs of gdrv.sys
☆146Updated 10 months ago
Alternatives and similar repositories for KDP-compatible-driver-loader:
Users that are interested in KDP-compatible-driver-loader are comparing it to the libraries listed below
- manual map unsigned driver over signed memory☆186Updated last year
- load unsigned kernel-driver by patching dse in 248 lines☆116Updated last year
- Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver☆167Updated last year
- ☆199Updated 2 years ago
- Unknowncheats Magically Optimized Tidy Mapper using nvaudio☆121Updated 10 months ago
- driver manual mapper powered by https://github.com/estimated1337/lenovo_exec☆110Updated 2 years ago
- Standard Kernel Library for Windows manipulation in C++☆141Updated 5 months ago
- base for testing☆164Updated 6 months ago
- ☆178Updated 3 years ago
- Loads a signed kernel driver which allows you to map any driver to kernel mode without any traces of the signed / mapped driver.☆321Updated 3 years ago
- A mapper that maps shellcode into loaded large page drivers☆273Updated 2 years ago
- Kernel driver for detecting Intel VT-x hypervisors.☆182Updated last year
- State of the art DLL injector that took 20 minutes to make☆214Updated last year
- ☆278Updated last week
- x64 Windows kernel driver mapper, inject unsigned driver using anycall☆149Updated last year
- r/w virtual memory without attach☆167Updated last year
- ☆151Updated 11 months ago
- A Kernel Driver that can be used for a cheat or malware base to circumvent common cache & structure table checks. PsLoadedModuleList howe…☆111Updated 7 months ago
- ☆152Updated 5 years ago
- Drawing from kernelmode without any hooks☆160Updated 2 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆312Updated 2 years ago
- Kernel Lazy Importer☆112Updated last year
- IoCreateDriver Implementation, it can be handful if you're trying to bypass anticheats☆77Updated 11 months ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆118Updated last year
- nmi stackwalking + module verification☆111Updated last year
- Windows Kernel inject (no module no thread)☆273Updated 2 years ago
- 从MmPfnData中枚举进程和页目录基址☆167Updated last year
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆111Updated 3 years ago
- Load your driver like win32k.sys☆251Updated 2 years ago
- Hooking Windows' exception dispatcher to protect process's PML4☆165Updated 3 months ago