TS-Changer - Forces the machine in/out of TestSigning Mode at runtime.
☆64Aug 14, 2023Updated 2 years ago
Alternatives and similar repositories for TS-Changer
Users that are interested in TS-Changer are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Enumerate Callbacks and all Object Types☆16Jan 9, 2023Updated 3 years ago
- Detect removed thread from PspCidTable.☆75Mar 18, 2022Updated 4 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆103Jun 26, 2023Updated 2 years ago
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆35Mar 23, 2024Updated 2 years ago
- manual map unsigned driver over signed memory☆222Apr 11, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆27Oct 18, 2023Updated 2 years ago
- Bypassing EasyAntiCheat.sys self-integrity by abusing call hierarchy☆82Oct 6, 2022Updated 3 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆268Aug 31, 2022Updated 3 years ago
- ☆47Jul 7, 2024Updated last year
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆159Mar 16, 2026Updated last month
- An example code of CiGetCertPublisherName☆16Mar 24, 2022Updated 4 years ago
- Native API header files for the Process Hacker project (nightly).☆26Sep 28, 2025Updated 6 months ago
- x64 Windows implementation of virtual-address to physical-address translation☆50Jun 3, 2021Updated 4 years ago
- ☆147Jan 24, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A mapper that maps shellcode into loaded large page drivers☆332Apr 26, 2022Updated 3 years ago
- POC Hook of nt!HvcallCodeVa☆54May 8, 2023Updated 2 years ago
- Bypasses for Windows kernel callbacks PatchGuard protection☆44Aug 15, 2021Updated 4 years ago
- State of the art DLL injector that took 20 minutes to make☆227Aug 16, 2023Updated 2 years ago
- Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executabl…☆392Jan 29, 2022Updated 4 years ago
- Module extending manual mapper☆381Mar 28, 2020Updated 6 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆238Apr 2, 2022Updated 4 years ago
- ☆367May 11, 2025Updated 11 months ago
- driver manual mapper powered by https://github.com/estimated1337/lenovo_exec☆116Dec 28, 2022Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- KDP compatible unsigned driver loader leveraging a write primitive in one of the IOCTLs of gdrv.sys☆166Jun 14, 2024Updated last year
- Abusing nvidia driver (nvoclock.sys) for physical/virtual memory and control register manipulation.☆284Mar 16, 2026Updated last month
- HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate oper…☆380Jun 3, 2023Updated 2 years ago
- nmi stackwalking + module verification☆166Dec 28, 2023Updated 2 years ago
- Proof of concept on how to bypass some limitations of a manual mapped driver☆172Oct 24, 2020Updated 5 years ago
- Reimplementation of the KExecDD DSE bypass technique.☆61Sep 7, 2024Updated last year
- base for testing☆186Sep 28, 2024Updated last year
- Load your driver like win32k.sys☆259Aug 20, 2022Updated 3 years ago
- RWX Section Abusing☆16Nov 19, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Loads a signed kernel driver which allows you to map any driver to kernel mode without any traces of the signed / mapped driver.☆391Aug 8, 2021Updated 4 years ago
- Inline syscalls made for MSVC supporting x64 and WOW64☆194Jul 10, 2023Updated 2 years ago
- Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6☆108Mar 16, 2026Updated last month
- External Hooking ( Bypasss process byte patching checks | Injector included )☆22Mar 12, 2023Updated 3 years ago
- PoC kernel to usermode injection☆110Feb 26, 2024Updated 2 years ago
- Analyze PatchGuard☆56Aug 19, 2018Updated 7 years ago
- Windows handle stealing POC with NtDuplicateObject☆41May 7, 2017Updated 8 years ago