Ahora57 / HypervisorCheckR0
Just check hypervisor in ring0
☆15Updated last year
Related projects ⓘ
Alternatives and complementary repositories for HypervisorCheckR0
- ☆32Updated 2 years ago
- Kernel Level NMI Callback Blocker☆32Updated 2 months ago
- Discarded Section Manual Map☆66Updated 4 years ago
- A simple ida python script to find .data ptr☆47Updated last year
- ☆41Updated 3 years ago
- communicate with kernel using a image on disk☆16Updated 6 months ago
- Achieving code execution through abusing vectored exception handling☆17Updated last year
- page table manipulation to gain physical r/w☆38Updated 6 months ago
- A library to assist with memory & code protection.☆53Updated 8 months ago
- Create stealthy, inline, EPT-like hooks using SMAP and SMEP☆33Updated last month
- Old way for blocking NMI interrupts☆25Updated 2 years ago
- Making syscall calls in regions with the SEC_NO_CHANGE flag☆27Updated 4 months ago
- ☆49Updated 2 years ago
- Old project (2020) reformed. Modifies gRT->GetVariable sub function from EFI_APPLICATION. Tested on Win10 22H2 (AMD).☆45Updated 8 months ago
- 将驱动映射到会话空间☆33Updated 2 years ago
- ☆40Updated 2 years ago
- An advanced DKOM for drivers with "DRIVER_OBJECT"☆16Updated last year
- A minimalistic way to spoof return addresses without using exceptions☆14Updated 2 years ago
- ☆70Updated 2 years ago
- Library to manipulate drivers that expose a physical memory read/write primitive.☆21Updated last year
- ☆55Updated last year
- POC Hook of nt!HvcallCodeVa☆50Updated last year
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆30Updated 7 months ago
- ☆44Updated 2 years ago
- nmi stackwalking + module verification☆91Updated 10 months ago
- ☆37Updated 4 months ago
- ☆33Updated 2 years ago