SDXT / MMInject
Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL
☆201Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for MMInject
- Loads a signed kernel driver which allows you to map any driver to kernel mode without any traces of the signed / mapped driver.☆279Updated 3 years ago
- 从MmPfnData中枚举进程和页目录基址☆139Updated last year
- ☆171Updated last year
- ☆159Updated 2 years ago
- A mapper that maps shellcode into loaded large page drivers☆229Updated 2 years ago
- ☆177Updated 2 years ago
- Code for Battleyes shellcode☆212Updated 3 years ago
- ☆194Updated last year
- Windows Kernel inject (no module no thread)☆265Updated 2 years ago
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆110Updated 2 years ago
- Easy Anti PatchGuard☆214Updated 3 years ago
- Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver☆152Updated last year
- Unknowncheats Magically Optimized Tidy Mapper using nvaudio☆100Updated 5 months ago
- Kernel mode to user mode dll injection☆223Updated 3 years ago
- ☆143Updated 2 years ago
- Using CVE-2023-21768 to manual map kernel mode driver☆176Updated last year
- manual map unsigned driver over signed memory☆183Updated 7 months ago
- Example of reading process memory through kernel special APC☆98Updated last year
- ☆150Updated 6 months ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆140Updated last year
- Check your detection vectors☆137Updated this week
- Abusing nvidia driver (nvoclock.sys) for physical/virtual memory and control register manipulation.☆245Updated last year
- 让Etwhook再次伟大! Make InfinityHook Great Again!☆124Updated 3 years ago
- a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.☆142Updated 2 months ago
- Load your driver like win32k.sys☆246Updated 2 years ago
- Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executabl…☆290Updated 2 years ago
- A proof of concept demonstrating instrumentation callbacks on Windows 10 21h1 with a TLS variable to ensure all syscalls are caught.☆117Updated 3 years ago
- r/w virtual memory without attach☆152Updated last year
- Kernel LdrLoadDll injector☆257Updated 6 years ago
- Simple Kernelmode DLL Injector with Manual mapping☆238Updated 11 months ago