uefi diskless persistence technique + OVMF secureboot bypass
☆102Apr 22, 2024Updated 2 years ago
Alternatives and similar repositories for ramiel
Users that are interested in ramiel are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆34Apr 22, 2024Updated 2 years ago
- Unicorn Engine port for UEFI firmware☆53Mar 25, 2025Updated last year
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆269Aug 31, 2022Updated 3 years ago
- Binaries, drivers, PoCs and other stuff on Hydroph0bia vulnerability (CVE-2025-4275)☆41Jun 20, 2025Updated last year
- Self-hosting binary instrumentation framework for security research☆12Apr 10, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Updated version of System Management Mode backdoor for UEFI based platforms: old dog, new tricks☆376Nov 3, 2023Updated 2 years ago
- Research-focused hypervisor offering advanced tools for debugging, virtual machine introspection, and automation.☆45Jun 3, 2026Updated last month
- ☆13Sep 25, 2023Updated 2 years ago
- Simple anti-instrumentation with EFLAGS.AC☆17Mar 31, 2025Updated last year
- Reverse engineered API for Microsoft's Time Travel Debugger☆35Apr 18, 2024Updated 2 years ago
- ☆29Dec 26, 2021Updated 4 years ago
- A small tool for rapid enumeration of CPUID, and MSR fields.☆34Jan 30, 2024Updated 2 years ago
- Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in …☆61Dec 30, 2025Updated 6 months ago
- PoC code and tools for Black Hat USA 2024☆26Aug 1, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- LLVM JIT: An Example☆17Jul 7, 2020Updated 6 years ago
- PE (and elf now!) bin2bin obfuscator☆850Oct 11, 2025Updated 9 months ago
- An example of how to use Microsoft Windows Warbird technology☆96Apr 23, 2023Updated 3 years ago
- An obfuscator bases on llvm for multiple language and platform☆19Jun 28, 2017Updated 9 years ago
- Create stealthy, inline, EPT-like hooks using SMAP and SMEP☆66Oct 19, 2024Updated last year
- PCI Express DIY hacking toolkit for Xilinx SP605. This repository is also home of Hyper-V Backdoor and Boot Backdoor, check readme for li…☆880Mar 7, 2026Updated 4 months ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆335Oct 13, 2024Updated last year
- x86-64 virtualizing obfuscator written in Rust☆118Nov 16, 2023Updated 2 years ago
- devirtualization vmprotect☆69Mar 11, 2023Updated 3 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.☆59Sep 20, 2022Updated 3 years ago
- Using Windows' own bootloader as a shim to bypass Secure Boot☆247Jul 17, 2024Updated 2 years ago
- Library of BOFs to interact with SQL servers☆23Apr 9, 2025Updated last year
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆51Mar 11, 2021Updated 5 years ago
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆40Nov 28, 2023Updated 2 years ago
- Cosmic Rowhammer - Crowdsourcing random bitflips for exploitation☆25Mar 18, 2026Updated 4 months ago
- Experimental Windows x64 Kernel Rootkit with anti-rootkit evasion features.☆611Aug 2, 2025Updated 11 months ago
- Dynamically resolve API function addresses at runtime in a secure manner.☆73Nov 11, 2025Updated 8 months ago
- Rust bindings to the System Informer's (formerly known as Process Hacker) "phnt" native Windows headers☆50Updated this week
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A demonstration of hooking into the VMProtect-2 virtual machine☆26Nov 9, 2023Updated 2 years ago
- HvLoader.efi is an EFI application for loading an external hypervisor loader☆73Jun 12, 2023Updated 3 years ago
- llvm powered deobfuscation of a vm-based protection☆62Feb 25, 2026Updated 4 months ago
- Rusty Bootkit - Windows UEFI Bootkit in Rust (Codename: RedLotus)☆582May 14, 2026Updated 2 months ago
- A basic implementation of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆78Mar 29, 2025Updated last year
- Header-only C++ library for producing PE files.☆38Jun 17, 2023Updated 3 years ago
- A small bootkit which does not rely on x64 assembly.☆529Aug 29, 2019Updated 6 years ago