IntelSDM / PEFromMemoryLinks
Executing EXE Files From Memory
☆11Updated 2 years ago
Alternatives and similar repositories for PEFromMemory
Users that are interested in PEFromMemory are comparing it to the libraries listed below
Sorting:
- communicate with kernel using a image on disk☆16Updated last year
- UM-KM Communication using registry callbacks☆39Updated 5 years ago
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆34Updated last year
- A simple MmCopyMemory hook.☆37Updated 3 years ago
- POC kernel driver with hidden system thread☆13Updated last year
- ☆27Updated 2 years ago
- ☆16Updated 3 years ago
- ☆17Updated 5 years ago
- ☆59Updated 2 years ago
- An other Detected & Pasted driver☆24Updated 3 years ago
- A simple present scene, kernel allocation injector.☆26Updated 3 years ago
- Register a callback from a Manually mapped kernel module☆15Updated 4 years ago
- ☆36Updated 3 years ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆71Updated 2 years ago
- PE Header (.rdata,.data,.text) obsfucation☆36Updated 3 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆102Updated 2 years ago
- ☆19Updated last year
- ☆63Updated 3 years ago
- ☆43Updated 2 years ago
- Mapping your code on a 0x1000 size page☆71Updated 3 years ago
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆49Updated 4 months ago
- Hiding a system thread against conventional means of detection☆41Updated 5 years ago
- Patches DSE by swapping both data ptrs located in SeValidateImageHeader && SeValidateImageData☆22Updated last year
- ☆43Updated 4 years ago
- Proof of Concept Kernel-User Communication using System Thread.☆14Updated 2 years ago
- An advanced DKOM for drivers with "DRIVER_OBJECT"☆22Updated 2 years ago
- ☆51Updated 2 years ago
- page table manipulation to gain physical r/w☆43Updated last year
- ☆12Updated 6 years ago
- Bypass using kernel driver (not finish).☆20Updated 2 years ago