SamuelTulach / efi-memory
PoC EFI runtime driver for memory r/w & kdmapper fork
☆518Updated 2 months ago
Alternatives and similar repositories for efi-memory:
Users that are interested in efi-memory are comparing it to the libraries listed below
- Efi Driver Access is a simply project to load a driver during system boot with the idea to give the user kernel access for read/write mem…☆393Updated 2 years ago
- UEFI bootkit for driver manual mapping☆532Updated last year
- Driver that uses network sockets to communicate with client and read/ write protected process memory.☆501Updated 5 years ago
- Manual mapping without creating any threads, with rw only access☆724Updated 5 years ago
- Reversing EasyAntiCheat.☆536Updated 5 years ago
- driver manual mapper (outdated/for educational purposes)☆100Updated 5 years ago
- Hide SMBIOS/disk/NIC serials from EFI bootkit☆288Updated 3 years ago
- DLL scatter manual mapper☆733Updated 3 years ago
- Kernel-mode Windows HWID spoofer☆555Updated last year
- PoC HWID spoofer that runs in EFI☆300Updated last month
- Kernel mode driver for reading/writing process memory. C/Win32.☆283Updated 6 years ago
- Rendering on external windows via hijacking thread contexts☆380Updated 4 years ago
- Lightweight Intel VT-x Hypervisor.☆449Updated 2 months ago
- Module extending manual mapper☆324Updated 4 years ago
- Stealthy UM <-> KM communication system without creating any system threads, permanent hooks, driver objects, section objects or device o…☆370Updated 11 months ago
- Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module☆415Updated 6 years ago
- Kernel cheat with kernel hook for communication☆296Updated 3 years ago
- Access without a real handle☆917Updated 3 years ago
- Simple code to manipulate the memory of a usermode process from kernel.☆271Updated 8 years ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆527Updated last month
- Emulate Drivers in RING3 with self context mapping or unicorn☆323Updated 2 years ago
- EAC Bypass☆300Updated 4 years ago
- A library to read/write memory to Windows on KVM☆267Updated 4 years ago
- Hiding the window from screenshots using the function win32kfull::GreProtectSpriteContent☆537Updated last month
- xigmapper is a driver manual mapper that loads your driver before Vanguard, but after critical system infrastructure has been set up, all…☆244Updated last year
- Disable DSE and WinTcb (without breaking DRM)☆430Updated 8 years ago
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆587Updated 5 years ago
- Hooking kernel functions by abusing alignment☆240Updated 4 years ago
- A somewhat wide collection of various kernelmode-usermode communication methods in one repository (mainly just for learning purposes).☆306Updated 5 years ago
- get_module, read/write mem, mouse emulation☆306Updated 4 years ago