Dracopa / Kernelmode-driver
Simple IOCTL hooking driver for Kernel- User - Mode communication.
☆9Updated 4 years ago
Related projects: ⓘ
- Stealthy Injector that leverages a vulnerable driver and other exploits to remain undetected☆36Updated 5 years ago
- driver interface with dll-injection capabilities☆28Updated 3 years ago
- Reading/writing memory from kernel-mode☆21Updated 7 years ago
- Example of hijacking system calls via function pointer tables☆30Updated 3 years ago
- ☆14Updated this week
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆27Updated 2 years ago
- ☆33Updated 4 years ago
- Analysing and defeating PatchGuard universally☆34Updated 3 years ago
- A poc that abuses Enclave☆36Updated 2 years ago
- reverse engineering of bedaisy.sys (battleyes kernel driver) - Aki2k/BEDaisy☆53Updated 4 years ago
- simply manual map any system image☆16Updated 3 years ago
- comparing data of module exports from disk and memory, then caching any differences.☆23Updated 2 years ago
- ☆24Updated this week
- A resource for thread hijacking and manual mapping code, that works with MEM_MAPPED & MEM_IMAGE.☆22Updated 3 years ago
- ☆28Updated this week
- Two PoC of accessing process virtual memory via NT Kernel☆24Updated 3 years ago
- ☆28Updated this week
- NT reversal☆24Updated 6 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆39Updated last year
- ☆19Updated 2 years ago
- detect hypervisor with Nmi Callback☆32Updated last year
- ☆47Updated 5 years ago
- eac memory sig maker☆11Updated 3 years ago
- ☆12Updated 3 years ago
- Simple IOCTL hooking driver for Kernel- User - Mode communication.☆12Updated 4 years ago
- Injector with kernel power☆15Updated 3 years ago
- Detour library (x64 and x86 compatible)☆11Updated 3 years ago
- External cheat base with DirectX overlay☆20Updated 6 years ago
- ☆24Updated this week
- x64 assembler library☆32Updated 3 months ago