TS-Changer - Forces the machine in/out of TestSigning Mode at runtime.
☆63Aug 14, 2023Updated 2 years ago
Alternatives and similar repositories for TS-Changer
Users that are interested in TS-Changer are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Enumerate Callbacks and all Object Types☆16Jan 9, 2023Updated 3 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆105Jun 26, 2023Updated 2 years ago
- manual map unsigned driver over signed memory☆231Apr 11, 2024Updated 2 years ago
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆36Mar 23, 2024Updated 2 years ago
- ☆27Oct 18, 2023Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Bypassing EasyAntiCheat.sys self-integrity by abusing call hierarchy☆83Oct 6, 2022Updated 3 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆272Aug 31, 2022Updated 3 years ago
- ☆48Jul 7, 2024Updated last year
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆159Mar 16, 2026Updated 3 months ago
- An example code of CiGetCertPublisherName☆16Mar 24, 2022Updated 4 years ago
- Native API header files for the Process Hacker project (nightly).☆26Updated this week
- x64 Windows implementation of virtual-address to physical-address translation☆51Jun 3, 2021Updated 5 years ago
- ☆147Jan 24, 2024Updated 2 years ago
- A mapper that maps shellcode into loaded large page drivers☆364Apr 26, 2022Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- POC Hook of nt!HvcallCodeVa☆55May 8, 2023Updated 3 years ago
- Bypasses for Windows kernel callbacks PatchGuard protection☆44Aug 15, 2021Updated 4 years ago
- State of the art DLL injector that took 20 minutes to make☆231Aug 16, 2023Updated 2 years ago
- Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executabl…☆404Jan 29, 2022Updated 4 years ago
- Module extending manual mapper☆398Mar 28, 2020Updated 6 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆241Apr 2, 2022Updated 4 years ago
- ☆375May 11, 2025Updated last year
- driver manual mapper powered by https://github.com/estimated1337/lenovo_exec☆118Dec 28, 2022Updated 3 years ago
- Abusing nvidia driver (nvoclock.sys) for physical/virtual memory and control register manipulation.☆289Mar 16, 2026Updated 3 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- KDP compatible unsigned driver loader leveraging a write primitive in one of the IOCTLs of gdrv.sys☆170Jun 14, 2024Updated 2 years ago
- nmi stackwalking + module verification☆170Dec 28, 2023Updated 2 years ago
- HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate oper…☆382Jun 3, 2023Updated 3 years ago
- Proof of concept on how to bypass some limitations of a manual mapped driver☆168Oct 24, 2020Updated 5 years ago
- Reimplementation of the KExecDD DSE bypass technique.☆61Sep 7, 2024Updated last year
- base for testing☆192Sep 28, 2024Updated last year
- Load your driver like win32k.sys☆257Aug 20, 2022Updated 3 years ago
- RWX Section Abusing☆16Nov 19, 2023Updated 2 years ago
- Loads a signed kernel driver which allows you to map any driver to kernel mode without any traces of the signed / mapped driver.☆402Aug 8, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Inline syscalls made for MSVC supporting x64 and WOW64☆192Jul 10, 2023Updated 2 years ago
- Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6☆108Mar 16, 2026Updated 3 months ago
- External Hooking ( Bypasss process byte patching checks | Injector included )☆22Mar 12, 2023Updated 3 years ago
- Analyze PatchGuard☆56Aug 19, 2018Updated 7 years ago
- Windows handle stealing POC with NtDuplicateObject☆41May 7, 2017Updated 9 years ago
- Preventing internal cheats with process mitigation policies☆14Jul 23, 2023Updated 2 years ago
- Signtool for expired certificates☆517Jun 10, 2023Updated 3 years ago