NewWorldComingSoon / llvm-msvc
This project migrated to https://github.com/backengineering/llvm-msvc
☆81Updated last year
Related projects: ⓘ
- Windows PDB parser for kernel-mode environment.☆82Updated last year
- Kernel driver for detecting Intel VT-x hypervisors.☆167Updated last year
- Standard Kernel Library for Windows hacking in C++☆57Updated last month
- ☆124Updated last year
- based on https://github.com/secrary/Hooking-via-InstrumentationCallback☆67Updated 4 years ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆140Updated last year
- nmi stackwalking + module verification☆78Updated 8 months ago
- ☆114Updated 11 months ago
- Static user/kernel mode library that allows access to all functions and global variables by extracting offsets from the PDB☆69Updated last year
- Windows X64 mode use seh in manual mapped dll or manual mapped sys☆63Updated last year
- A proof of concept demonstrating instrumentation callbacks on Windows 10 21h1 with a TLS variable to ensure all syscalls are caught.☆111Updated 2 years ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆69Updated last year
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆55Updated 3 weeks ago
- ☆66Updated 2 years ago
- ☆50Updated this week
- Handling C++ & __try exceptions without the need of built-in handlers.☆63Updated 3 years ago
- a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.☆108Updated last week
- Shows an example of how to implement VT-d/AMD-Vi on Windows☆74Updated 11 months ago
- Some psuedo snippets from BattlEye's BEDaisy.sys loaded on Rainbow Six: Siege.☆116Updated 2 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆75Updated last year
- ☆82Updated this week
- Example of reading process memory through kernel special APC☆91Updated last year
- A simple ida python script to find .data ptr☆44Updated last year
- A simple tool to assemble shellcode ready to be copy-pasted into code☆63Updated 2 years ago
- Obfuscate calls to imports by patching in stubs☆58Updated 3 years ago
- Binary rewriter for 64-bit PE files.☆40Updated 7 months ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆82Updated 11 months ago
- Kernel ReClassEx☆58Updated 10 months ago
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆44Updated last year
- A library to assist with memory & code protection.☆53Updated 6 months ago