An advanced DKOM for drivers with "DRIVER_OBJECT"
☆22Feb 19, 2023Updated 3 years ago
Alternatives and similar repositories for Driver-DKOM
Users that are interested in Driver-DKOM are comparing it to the libraries listed below
Sorting:
- Bypassing kernel patch protection runtime☆22Feb 19, 2023Updated 3 years ago
- POC kernel driver with hidden system thread☆13May 14, 2024Updated last year
- A simple C++ driver base with KD data block☆11Jun 25, 2022Updated 3 years ago
- ☆27Oct 16, 2017Updated 8 years ago
- POC for your p2c "unique loader build"☆13Jun 28, 2024Updated last year
- Disable NMI Callbacks with Kernelmode Driver☆18Mar 15, 2023Updated 2 years ago
- i stole this from some guys private repo on github☆58Jul 11, 2021Updated 4 years ago
- ☆17Dec 18, 2020Updated 5 years ago
- Overwatch 2 Tool which shows Players through walls.☆13Feb 9, 2024Updated 2 years ago
- Binary Ninja plugin to perform automated analysis of Windows drivers☆20Aug 8, 2019Updated 6 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆234Apr 2, 2022Updated 3 years ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆132Apr 26, 2023Updated 2 years ago
- ☆73Aug 31, 2022Updated 3 years ago
- Mapping your code on a 0x1000 size page☆71May 20, 2022Updated 3 years ago
- How to use PiDqSerializationWrite. Introduces how to safely read and write from mapped driver☆26May 29, 2023Updated 2 years ago
- A C++ syscall ID extractor for Windows. Developed, debugged and tested on 20H2.☆21May 25, 2021Updated 4 years ago
- communicate with kernel using a image on disk☆16May 1, 2024Updated last year
- ☆24May 26, 2021Updated 4 years ago
- Tool to dump EFI runtime drivers.☆39Feb 23, 2024Updated 2 years ago
- Using CVE-2021-40449 to manual map kernel mode driver☆104Mar 5, 2022Updated 4 years ago
- Hygieia, a vulnerable driver traces scanner written in C++ as an x64 Windows kernel driver.☆151Feb 12, 2022Updated 4 years ago
- ☆146Jan 13, 2021Updated 5 years ago
- ☆37May 21, 2022Updated 3 years ago
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆84Dec 21, 2022Updated 3 years ago
- Provides commands to read from and write to arbitrary kernel-mode memory for users with the Administrator privilege. HVCI compatible. No …☆23Jun 16, 2024Updated last year
- detect hypervisor with Nmi Callback☆42Sep 25, 2022Updated 3 years ago
- x64 syscall caller in C++.☆93Jun 23, 2018Updated 7 years ago
- ☆58Mar 14, 2023Updated 2 years ago
- hidden_syscall - syscaller without using syscall instruction in code☆63Jan 23, 2023Updated 3 years ago
- windows kernel pagehook☆42Oct 30, 2022Updated 3 years ago
- ☆20Aug 13, 2023Updated 2 years ago
- ☆43Apr 18, 2023Updated 2 years ago
- Rendering on external windows via hijacking thread contexts, with notes on ValidateHwnd☆14Jul 9, 2020Updated 5 years ago
- A simple MmCopyMemory hook.☆38Jul 11, 2022Updated 3 years ago
- ☆12Jul 12, 2022Updated 3 years ago
- https://www.youtube.com/watch?v=qsjGj_L1kyo☆10Jul 29, 2021Updated 4 years ago
- Read Windows message table entries.☆11Feb 5, 2023Updated 3 years ago
- type 1 thin hypervisor written in C++☆17Dec 18, 2024Updated last year
- mash hypervisor host pml4☆17Jun 22, 2022Updated 3 years ago