5paceman / nightshade
Nightshade is a Windows Memory Manipluation library specifically for injecting DLLs and Game Hacking
☆14Updated 2 years ago
Alternatives and similar repositories for nightshade:
Users that are interested in nightshade are comparing it to the libraries listed below
- Libraries written in inline assembly☆19Updated last year
- ☆21Updated last year
- Single header library to simplify the usage of direct syscalls. x64/x86☆11Updated last year
- A project on the Unicorn emulator to emulate the code of Pe files in windows☆21Updated 5 months ago
- Abusing RtlAdjustPrivilege and NtSetInformationProcess to cause a BSOD from usermode☆17Updated 2 years ago
- A simple present scene, kernel allocation injector.☆24Updated 2 years ago
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆28Updated 2 years ago
- neat way to detect memory read using nt layer function.☆14Updated last year
- Disable threat tracing from the kernel..☆12Updated 2 years ago
- x64 assembler library☆31Updated 8 months ago
- An example code of CiGetCertPublisherName☆14Updated 2 years ago
- ☆26Updated last year
- ☆30Updated last year
- My Personal Kernel-Mode Process dumper☆13Updated last year
- it's a driver injector or driver loader header lib(Windows)☆12Updated last year
- Driver that communicates using a thread and a shared section with Usermode☆38Updated last week
- ☆15Updated 4 years ago
- ☆13Updated 4 years ago
- eac memory sig maker☆12Updated 3 years ago
- ☆10Updated 2 years ago
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated 2 years ago
- ☆22Updated 11 months ago
- Stealing signatures from pe files☆16Updated 2 years ago
- ☆15Updated 4 years ago
- A poc that abuses Enclave☆36Updated 2 years ago
- Walks through the 4-level paging structures in Windows x64☆13Updated 2 years ago
- Example of making debugger using Hardware Breakpoint + VEH☆18Updated 3 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆42Updated last year
- Hijack NotifyRoutine for a kernelmode thread☆41Updated 2 years ago