Example of reading process memory through kernel special APC
☆111Apr 21, 2023Updated 3 years ago
Alternatives and similar repositories for Kernel-Special-APC-ReadProcessMemory
Users that are interested in Kernel-Special-APC-ReadProcessMemory are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆106Sep 1, 2022Updated 3 years ago
- ☆143Dec 10, 2022Updated 3 years ago
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆159Mar 16, 2026Updated 4 months ago
- ☆317May 11, 2023Updated 3 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆105Jun 26, 2023Updated 3 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Archive R/W into any protected process by changing the value of KTHREAD->PreviousMode☆161Jul 31, 2022Updated 4 years ago
- r/w virtual memory without attach☆235Oct 19, 2023Updated 2 years ago
- usermode driver mapper that forcefully loads any signed kernel driver (legit cert) with a big enough section (example: .data, .rdata) to …☆504Jan 3, 2022Updated 4 years ago
- anti cheat drv open source☆19Apr 18, 2024Updated 2 years ago
- Windows Kernel Misc☆25Sep 3, 2023Updated 2 years ago
- detect hypervisor with Nmi Callback☆41Sep 25, 2022Updated 3 years ago
- 从MmPfnData中枚举进程和页目录基址☆224Aug 18, 2023Updated 2 years ago
- ☆189May 20, 2022Updated 4 years ago
- ☆157May 21, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- a monitoring windows driver calls kernel api tools☆137Jul 5, 2024Updated 2 years ago
- ☆20Apr 14, 2023Updated 3 years ago
- Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6☆111Mar 16, 2026Updated 4 months ago
- ☆48Sep 25, 2024Updated last year
- base for testing☆194Sep 28, 2024Updated last year
- etw hook (syscall/infinity hook) compatible with the latest Windows version of PG☆350Apr 26, 2026Updated 3 months ago
- A Windows Memory driver for game hacking purposes. Supports manual mapping with BlackBone and PastDSE.☆44Apr 23, 2021Updated 5 years ago
- a debugger use vt technology☆372Jun 30, 2022Updated 4 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆104May 10, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Windows Kernel inject (no module no thread)☆281Nov 11, 2022Updated 3 years ago
- A intel hypervisor, implementing many virtualization techniques☆54Apr 24, 2023Updated 3 years ago
- 内核级别隐藏指定窗口☆324Feb 9, 2022Updated 4 years ago
- A mapper that maps shellcode into loaded large page drivers☆367Apr 26, 2022Updated 4 years ago
- Old way for blocking NMI interrupts☆28Sep 6, 2022Updated 3 years ago
- spoof page-table-entry nx bit☆12Feb 16, 2022Updated 4 years ago
- A very simple C++ library for download pdb, get rva of function, global variable and offset from struct.☆162Mar 26, 2024Updated 2 years ago
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆117Feb 8, 2022Updated 4 years ago
- POC Hook of nt!HvcallCodeVa☆53May 8, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- 将shellcode注入dwm.exe以进行屏幕截取☆370Mar 22, 2022Updated 4 years ago
- Shows an example of how to implement VT-d/AMD-Vi on Windows☆182Sep 22, 2023Updated 2 years ago
- ShotHv☆159Mar 8, 2022Updated 4 years ago
- 兼容且隐蔽的DWM HOOK☆65May 19, 2022Updated 4 years ago
- Hygieia, a vulnerable driver traces scanner written in C++ as an x64 Windows kernel driver.☆152Feb 12, 2022Updated 4 years ago
- Example driver on how to use SKLib☆82Nov 20, 2024Updated last year
- Unknowncheats Magically Optimized Tidy Mapper using nvaudio☆160Jun 11, 2024Updated 2 years ago