Hxnter999 / umpmLinks
Usermode access to arbitrary physical memory
☆13Updated 7 months ago
Alternatives and similar repositories for umpm
Users that are interested in umpm are comparing it to the libraries listed below
Sorting:
- WinApi Patcher is a straightforward tool leveraging windows API hooking to patch and modify certain behaviors in a targeted environment.☆43Updated 9 months ago
- Exploit for eneio64.sys - Turning Physical Memory R/W into Virtual Memory R/W☆39Updated last month
- A simple direct syscall wrapper written in C++ with compatibility for x86 and x64 programs.☆53Updated 5 months ago
- Native Shellcode Injector Via Handle Hijacking & Pool Party.☆12Updated last year
- Reduce Dynamic Analysis Detection Rates With Built-In Unhooker, Anti Analysis Techniques, And String Obfuscator Modules.☆19Updated 2 years ago
- Leveraging TPM2 TCG Logs (Measured Boot) to Detect UEFI Drivers and Pre-Boot Applications☆19Updated 3 months ago
- UEFI bootkit: Hardware Implant. In-Progress☆15Updated 3 years ago
- Scan for potentially vulnerable drivers☆88Updated 3 years ago
- Research of modifying exported function names at runtime (C/C++, Windows)☆17Updated last year
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated 2 years ago
- anti breakpoint using job objects in a simple way.☆13Updated last year
- Fully working kernel-mode VAC bypass☆79Updated 4 months ago
- A C++17 framework designed to enable obfuscation of constants, variables, and strings.☆25Updated last year
- silence file system monitoring components by hooking their minifilters☆57Updated last year
- Dynamically generated obfuscated jumps and/or function calls☆36Updated 2 years ago
- Using c++23 compile-time magic to produce obfuscated PIC strings and arrays.☆23Updated last year
- ☆59Updated 3 years ago
- A lightweight and easy to use and understand framework for hooking (x86, x64)☆10Updated last year
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆64Updated 2 years ago
- Load dll with undocumented functions and debug symbols☆47Updated 11 months ago
- Lightweight Threat Detection System - (Base)☆15Updated last year
- SoulExtraction is a windows driver library for extracting cert information in windows drivers☆24Updated 2 years ago
- ☆16Updated 2 years ago
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆42Updated 8 months ago
- ☆34Updated last year
- A windows kernel mode driver that spoofs serial numbers when mapped and executes a malicious payload (FULLY from kernel!!!)☆33Updated 9 months ago
- A VMWare logger using built-in backdoor.☆30Updated 9 months ago
- ☆58Updated last year
- ANY.RUN sandbox detection collection☆20Updated 10 months ago
- A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.☆30Updated 2 years ago