3gstudent / Inject-dll-by-APC
Asynchronous Procedure Calls
☆224Updated 4 years ago
Alternatives and similar repositories for Inject-dll-by-APC:
Users that are interested in Inject-dll-by-APC are comparing it to the libraries listed below
- Elevate a process to be a protected process☆150Updated 5 years ago
- Kernel LdrLoadDll injector☆260Updated 6 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆318Updated 2 years ago
- A more stealthy variant of "DLL hollowing"☆348Updated last year
- System call hook for Windows 10 20H1☆486Updated 3 years ago
- Manual DLL Injector using Thread Hijacking.☆238Updated 7 years ago
- Analyze patches in a process☆251Updated 3 years ago
- A library to develop kernel level Windows payloads for post HVCI era☆403Updated 3 years ago
- A modern c++ implementation of windows heavens gate☆222Updated 4 years ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆536Updated 4 months ago
- Research on Windows Kernel Executive Callback Objects☆286Updated 5 years ago
- Reflective PE loader for DLL injection☆174Updated 7 years ago
- pseudo-code to show how to disable patchguard with win10☆295Updated 7 years ago
- ☆152Updated 5 years ago
- x64 Windows PatchGuard bypass, register process-creation callbacks from unsigned code☆202Updated 3 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆217Updated 5 years ago
- codes for my blog post: https://secrary.com/Random/InstrumentationCallback/☆176Updated 7 years ago
- PE permutation library☆273Updated 2 years ago
- Process Doppelgänging☆156Updated 7 years ago
- windows kernelmode and usermode IAT hook☆146Updated 4 years ago
- Simple x86/x86_64 instruction level obfuscator based on a basic SBI engine☆267Updated 2 years ago
- Reverse engineered source code of the autochk rootkit☆202Updated 5 years ago
- Hide Driver By MiProcessLoaderEntry☆285Updated 5 years ago
- C++17 PE manualmapper☆353Updated 3 years ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆247Updated 3 months ago
- Load your driver like win32k.sys☆252Updated 2 years ago
- Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module☆416Updated 6 years ago
- ChimeraPE (a PE injector type - alternative to: RunPE, ReflectiveLoader, etc) - a template for manual loading of EXE, loading imports pay…☆223Updated 2 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆289Updated 5 years ago
- Vectored Exception Handling Hooking Class☆158Updated 6 years ago