Gbps / CapcomLib
A reflexive driver loader to bypass Windows DSE (featuring a custom PE loader)
☆41Updated 6 years ago
Alternatives and similar repositories for CapcomLib:
Users that are interested in CapcomLib are comparing it to the libraries listed below
- A poc that abuses Enclave☆38Updated 2 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆49Updated 4 years ago
- Stealthy Injector that leverages a vulnerable driver and other exploits to remain undetected☆36Updated 6 years ago
- Function hooks in Windows NT Kernel☆23Updated 4 years ago
- Example of hijacking system calls via function pointer tables☆31Updated 3 years ago
- ASUSTeK AsIO3 I/O driver unlock☆21Updated 4 years ago
- ☆68Updated 4 years ago
- x64 Windows implementation of virtual-address to physical-address translation☆41Updated 3 years ago
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- (DEPRECATED) A simple anti-anti debug library for Windows☆29Updated 4 years ago
- Скрытие строки от отладчиков и декомпиляторов☆50Updated 5 years ago
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆39Updated 2 years ago
- ☆59Updated 2 years ago
- Visual Studio Project example for using Microsoft's STL in WDM (Windows Kernel-mode Driver)☆25Updated 3 years ago
- Disk based DMA for ATA and SCSI☆23Updated last year
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 3 years ago
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆52Updated 3 years ago
- Code virtualizer☆23Updated 8 years ago
- PAGE_GUARD based hooking library☆43Updated 2 years ago
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆25Updated 5 years ago
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated 2 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆29Updated 4 years ago
- ☆30Updated 3 years ago
- detect hypervisor with Nmi Callback☆34Updated 2 years ago
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆48Updated 2 years ago
- This is the P.O.C source for hooking the system calls on Windows 10 (1903) using it's dynamic trace feature weakness☆51Updated 5 years ago
- Hijack NotifyRoutine for a kernelmode thread☆42Updated 2 years ago
- ☆46Updated 3 years ago
- An automatic tool for fixing dumped PE files☆41Updated 4 years ago
- Elevate arbitrary MSR writes to kernel execution.☆34Updated last year