A minimalistic way to spoof return addresses without using exceptions
☆21Jul 26, 2022Updated 4 years ago
Alternatives and similar repositories for Ret-Spoofing
Users that are interested in Ret-Spoofing are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Illustrates the concept of return address spoofing, and how it is used.☆14May 13, 2020Updated 6 years ago
- A simple way to spoof return addresses using an exception handler☆42Aug 3, 2022Updated 4 years ago
- ☆39Mar 23, 2023Updated 3 years ago
- Basic utilities for executing, reading and writing 64-bit data in a 32-bit WoW64 process☆20Jul 8, 2022Updated 4 years ago
- Hijack NotifyRoutine for a kernelmode thread☆38Jun 4, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- mash hypervisor host pml4☆16Jun 22, 2022Updated 4 years ago
- C++ Alt syscall hook in 25h2 can be load by KDU☆27Feb 18, 2026Updated 5 months ago
- LLVM Pass which inserts an opaque predicate at the end of a function, filled with junk bytes to cause IDA analysis to fail (x86_64)☆15May 11, 2025Updated last year
- Binary Ninja plugin to perform automated analysis of Windows drivers☆20Aug 8, 2019Updated 7 years ago
- Thats it! An Open-Source Windows UEFI Rootkit☆41Jul 19, 2025Updated last year
- Compileable POC of namazso's x64 return address spoofer.☆51Jun 10, 2020Updated 6 years ago
- Windows kernel driver that detects hypervisors by probing SIDT/LIDT edge cases, paging/TLB behaviors, privilege transitions, and timing e…☆49Mar 3, 2026Updated 5 months ago
- A simple MmCopyMemory hook.☆38Jul 11, 2022Updated 4 years ago
- ☆18Jan 11, 2026Updated 6 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A Windows rootkit that turns user-land processes into Protected Processes☆30Nov 16, 2024Updated last year
- Detour hooking IRQ1 ISR through IDT (Interrupt Descriptor Table)☆21Mar 16, 2026Updated 4 months ago
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆58May 23, 2022Updated 4 years ago
- a minimalistic windows hypervisor for amd processors☆152Jun 30, 2022Updated 4 years ago
- ☆50Apr 19, 2020Updated 6 years ago
- .data ptr swapper for newer win32k versions. (Supports Windows 11)☆37Jan 19, 2026Updated 6 months ago
- ☆24Oct 18, 2021Updated 4 years ago
- Decoder for VMProtect hwids☆19Aug 1, 2022Updated 4 years ago
- A demonstration of hooking into the VMProtect-2 virtual machine☆27Nov 9, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- 正确解析 _HEAP_VS_***符号 ,支持在最新win11 24h2 运行,替换windbg自带的!pool命令☆17Nov 30, 2024Updated last year
- A Rust version of Mirage, a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆40Mar 6, 2025Updated last year
- High-performance, AI-driven semantic analysis for the IDA Pro decompiler.☆26Nov 18, 2025Updated 8 months ago
- Shellcode capable of bypassing EAF / IAF mitigations☆30Apr 11, 2023Updated 3 years ago
- Research-focused hypervisor offering advanced tools for debugging, virtual machine introspection, and automation.☆45Jun 3, 2026Updated 2 months ago
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆43Aug 6, 2024Updated 2 years ago
- Small driver that uses alternative syscalls feature☆18May 9, 2024Updated 2 years ago
- Hygieia, a vulnerable driver traces scanner written in C++ as an x64 Windows kernel driver.☆151Feb 12, 2022Updated 4 years ago
- Simple anti-instrumentation with EFLAGS.AC☆17Mar 31, 2025Updated last year
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A wrapper class to hide the original calling address of a function☆54Aug 9, 2020Updated 6 years ago
- SMM driver/rootkit for platform memory access with R3 <-> R0 <-> R-2 communication.☆123Oct 15, 2024Updated last year
- Just check hypervisor in ring0☆16Jun 7, 2023Updated 3 years ago
- A pointer encryption library intended for Red Team implant design in Rust.☆67Oct 1, 2025Updated 10 months ago
- A simple tool to assemble shellcode ready to be copy-pasted into code☆70Jun 13, 2022Updated 4 years ago
- Interprocess communication via a covert timing channel☆26Oct 24, 2025Updated 9 months ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Nov 22, 2021Updated 4 years ago