SamuelTulach / DirectPageManipulationLinks
A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy
☆88Updated last year
Alternatives and similar repositories for DirectPageManipulation
Users that are interested in DirectPageManipulation are comparing it to the libraries listed below
Sorting:
- ☆54Updated 2 years ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆70Updated 2 years ago
- Old project (2020) reformed. Modifies gRT->GetVariable sub function from EFI_APPLICATION. Tested on Win10 22H2 (AMD).☆51Updated last year
- page table manipulation to gain physical r/w☆42Updated last year
- ☆81Updated last year
- just proof of concept. hooking MmCopyMemory PG safe.☆71Updated last year
- POC usermode <=> kernel communication via ALPC.☆57Updated 11 months ago
- ☆70Updated 2 years ago
- Discarded Section Manual Map☆68Updated 4 years ago
- ☆48Updated 3 years ago
- ☆30Updated 3 years ago
- clearing traces of a loaded driver☆47Updated 2 years ago
- nmi stackwalking + module verification☆119Updated last year
- Mapping your code on a 0x1000 size page☆72Updated 3 years ago
- This is an EfiGuard BootLoader that can boot EfiGuard from Usermode with no USB or Setup as a Single Executable with automatic File Dumpi…☆53Updated 8 months ago
- 将驱动映射到会话空间☆34Updated 2 years ago
- A simple MmCopyMemory hook.☆38Updated 2 years ago
- Example driver on how to use SKLib☆49Updated 6 months ago
- ☆75Updated last year
- ☆79Updated 3 years ago
- ntoskrnl .data hooks for UM-KM communication☆40Updated last year
- ☆24Updated 6 months ago
- ☆77Updated 3 years ago
- Driver that communicates using a shared section☆57Updated 2 months ago
- ☆46Updated 3 years ago
- Kernel driver that uses Shared memory to communicate with UserMode☆85Updated 6 years ago
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆113Updated 3 years ago
- A Kernel Driver that can be used for a cheat or malware base to circumvent common cache & structure table checks. PsLoadedModuleList howe…☆119Updated 8 months ago
- ☆50Updated last year
- My EAC & BE Rady CR3 Reading & Writing source that I use for my KM Drivers.☆64Updated 9 months ago