ByteWhite1x1 / DriverBaseLinks
A simple C++ driver base with KD data block
☆11Updated 3 years ago
Alternatives and similar repositories for DriverBase
Users that are interested in DriverBase are comparing it to the libraries listed below
Sorting:
- Windows kernel driver that detects hypervisors by probing SIDT/LIDT edge cases, paging/TLB behaviors, privilege transitions, and timing e…☆35Updated last month
- Disk based DMA for ATA and SCSI☆41Updated 2 years ago
- ☆17Updated 5 years ago
- This driver hooks a device object for ioctl and uses mdls to allocate physical pages and manually injects an entry into a process's page …☆15Updated 2 years ago
- ☆29Updated last year
- partially disable patchguard up to win11 21H2☆19Updated last year
- POC Hook of nt!HvcallCodeVa☆54Updated 2 years ago
- Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in …☆50Updated last month
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆53Updated 3 years ago
- A demonstration of hooking into the VMProtect-2 virtual machine☆23Updated 2 years ago
- Hook syscalls from ring0 without triggering PatchGuard☆22Updated 3 months ago
- ☆46Updated last year
- Old way for blocking NMI interrupts☆29Updated 3 years ago
- A simple present scene, kernel allocation injector.☆26Updated 3 years ago
- Interprocess communication via a covert timing channel☆26Updated 3 months ago
- detect hypervisor with Nmi Callback☆42Updated 3 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆51Updated 4 years ago
- ☆35Updated 2 years ago
- This is a ring -1 header framework in order to simplify the creation of hypervisors on SVM☆27Updated 2 years ago
- Kernel ReClassEx☆66Updated 2 years ago
- Collection of Cheat dumps for Research and Detection.☆16Updated last month
- ☆43Updated 2 years ago
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆45Updated 3 years ago
- Illustrates the concept of return address spoofing, and how it is used.☆14Updated 5 years ago
- Hijacking Hyper-V at Runtime with DDMA☆76Updated 5 months ago
- ☆37Updated last year
- ☆34Updated 2 years ago
- ☆73Updated 3 years ago
- ☆38Updated 3 years ago
- clearing traces of a loaded driver☆47Updated 3 years ago