NtKernelMC / MDE
Manual Mapping Detection Library
☆19Updated 4 years ago
Alternatives and similar repositories for MDE:
Users that are interested in MDE are comparing it to the libraries listed below
- Illustrates the concept of return address spoofing, and how it is used.☆13Updated 4 years ago
- ☆19Updated 2 years ago
- A poc that abuses Enclave☆37Updated 2 years ago
- ☆30Updated last year
- Stealing signatures from pe files☆17Updated 2 years ago
- comparing data of module exports from disk and memory, then caching any differences.☆22Updated 3 years ago
- Simple memory obfuscator.☆24Updated 2 years ago
- ☆45Updated 4 years ago
- Header only UM AC "bypass"☆19Updated 10 months ago
- Old way for blocking NMI interrupts☆26Updated 2 years ago
- Memory Guard Library☆11Updated 4 years ago
- ☆11Updated 10 months ago
- ☆18Updated 2 years ago
- ☆20Updated 3 years ago
- https://githacks.org/Shawick/goodeye.git☆48Updated 4 years ago
- Disable threat tracing from the kernel..☆13Updated 2 years ago
- Not mine. Only for saving☆24Updated 2 years ago
- it's a driver injector or driver loader header lib(Windows)☆12Updated last year
- detect hypervisor with Nmi Callback☆34Updated 2 years ago
- anti cheat drv open source☆16Updated 11 months ago
- ☆13Updated 4 years ago
- ☆20Updated 2 years ago
- ☆26Updated last year
- RWX Section Abusing☆17Updated last year
- search for a driver/dll module that has a wanted section bigger than the size of your image☆20Updated 3 years ago
- IO隐藏通信封装☆15Updated 3 years ago
- mouseclassservicecallback detection via hook☆50Updated 3 years ago
- ☆18Updated 4 years ago
- clearing traces of a loaded driver☆47Updated 2 years ago
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated 2 years ago