☆52Sep 15, 2016Updated 9 years ago
Alternatives and similar repositories for Captain-Hook
Users that are interested in Captain-Hook are comparing it to the libraries listed below
Sorting:
- Adding exceptions to Microsoft's Control Flow Guard (CFG)☆57Jun 21, 2016Updated 9 years ago
- A sample project for using Capstone from a driver in Visual Studio 2015☆36May 4, 2016Updated 9 years ago
- ☆12Feb 19, 2017Updated 9 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆39Mar 15, 2017Updated 8 years ago
- Software Distribution Service☆12Jul 2, 2015Updated 10 years ago
- PE32 binary + W32 payload☆11Jul 23, 2017Updated 8 years ago
- MIR-Engine☆23Jul 6, 2017Updated 8 years ago
- bmod parses binaries for modification/patching and disassembles machine code sections.☆12Apr 19, 2018Updated 7 years ago
- ☆43Jul 2, 2018Updated 7 years ago
- Loading unsigned code into kernel in Windows 10 (64) with help of VMware Workstation Pro/Player design flaw☆141Apr 4, 2017Updated 8 years ago
- kernel space code☆12Jun 8, 2019Updated 6 years ago
- Class implementation of PowerLoader injection technique☆32Dec 23, 2016Updated 9 years ago
- Application Security library☆11Nov 6, 2012Updated 13 years ago
- Anti-Anti-VM solution via Windows Driver☆62May 8, 2018Updated 7 years ago
- wow64 syscall filter☆13Nov 12, 2014Updated 11 years ago
- ☆16Sep 7, 2017Updated 8 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆78Aug 12, 2015Updated 10 years ago
- Windows过滤驱动-helloworld☆24Aug 27, 2015Updated 10 years ago
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- ☆14Jan 10, 2017Updated 9 years ago
- Kernel-mode file scanner☆19Jul 16, 2018Updated 7 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Jan 13, 2017Updated 9 years ago
- Simple code generation library developed in C intended for code generation in Kernel mode☆17Dec 9, 2022Updated 3 years ago
- kernel exploitation helper class☆77Nov 26, 2016Updated 9 years ago
- User-mode hook bypassing method☆33Aug 26, 2016Updated 9 years ago
- Block process execute kernel driver for Windows x64☆19Apr 7, 2016Updated 9 years ago
- DiskCryptor - it's a free solution that allows you to encrypt disk partitions, including system partition.☆17Dec 7, 2011Updated 14 years ago
- Windows kernel-mode callbacks tutorial driver☆48Aug 8, 2016Updated 9 years ago
- Old exploits and code for my self-referencing PML4 technique (2014)☆32May 8, 2015Updated 10 years ago
- Helper utility for debugging windows PE/PE+ loader.☆52Mar 15, 2015Updated 10 years ago
- Two tools used during our analysis of the Microsoft binary injection mitigation implemented in Edge TH2.☆53Feb 15, 2017Updated 9 years ago
- Supporting Files on my analysis of the malware designated hdroot.☆59Feb 23, 2017Updated 9 years ago
- simple PE packer written in C++☆56Feb 23, 2018Updated 8 years ago
- Brand New Code Injection for Windows☆741Oct 7, 2020Updated 5 years ago
- Wow64 syscall hook☆43May 28, 2017Updated 8 years ago
- Protect process fsfilter driver. Windows x64☆36Apr 11, 2016Updated 9 years ago
- Exploiting Edge's read:// urlhandler☆15Oct 23, 2021Updated 4 years ago
- ☆19Jul 20, 2015Updated 10 years ago
- Internet Explorer Exploit with CFG bypass for Windows 10☆59Jan 11, 2017Updated 9 years ago