ByteWhite1x1 / Driver-DKOMLinks
An advanced DKOM for drivers with "DRIVER_OBJECT"
☆17Updated 2 years ago
Alternatives and similar repositories for Driver-DKOM
Users that are interested in Driver-DKOM are comparing it to the libraries listed below
Sorting:
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆32Updated last year
- ☆31Updated 3 years ago
- UM-KM Communication using registry callbacks☆39Updated 5 years ago
- communicate with kernel using a image on disk☆16Updated last year
- A simple MmCopyMemory hook.☆38Updated 2 years ago
- Old way for blocking NMI interrupts☆26Updated 2 years ago
- 将驱动映射到会话空间☆35Updated 2 years ago
- clearing traces of a loaded driver☆47Updated 2 years ago
- Mapping your code on a 0x1000 size page☆72Updated 3 years ago
- POC kernel driver with hidden system thread☆14Updated last year
- ☆42Updated 3 years ago
- ☆54Updated 2 years ago
- ☆24Updated 7 months ago
- ☆21Updated 3 years ago
- ☆25Updated last year
- POC Hook of nt!HvcallCodeVa☆52Updated 2 years ago
- Execute anything in a legit memory region by attacking a windows driver☆19Updated last year
- Secure Hyper-Visor Injector for Easy Anti Cheat, Battleye | that supports amd + intel | Undetected + Active updates☆20Updated 2 years ago
- ☆50Updated last year
- A method to Disable DSE using .data ptr hooks☆32Updated last year
- Windows Kernel Misc☆23Updated last year
- Hiding a system thread against conventional means of detection☆40Updated 4 years ago
- Library to manipulate drivers that expose a physical memory read/write primitive.☆29Updated last year
- Old project (2020) reformed. Modifies gRT->GetVariable sub function from EFI_APPLICATION. Tested on Win10 22H2 (AMD).☆51Updated last year
- page table manipulation to gain physical r/w☆42Updated last year
- Proof of Concept Kernel-User Communication using System Thread.☆15Updated last year
- ntoskrnl .data hooks for UM-KM communication☆40Updated last year
- ☆72Updated 2 years ago
- Discarded Section Manual Map☆68Updated 5 years ago
- POC Windows kernel driver that spoofs threads for NMI callbacks on x86-64.☆21Updated 2 months ago