Teq2 / SEH-Over-VEH
Implementation of a dispatcher for Structured Exceptions inside a Vectored Exception Handler
☆37Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for SEH-Over-VEH
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆73Updated 13 years ago
- Manual PE image mapper☆61Updated 11 years ago
- Simple proof of concept code for injecting libraries on 64bit processes from a 32bit process☆93Updated 6 years ago
- Analyze PatchGuard☆53Updated 6 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆55Updated 6 years ago
- Library for kernel and user mode splicing for Windows (x86 and x64).☆62Updated 12 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆33Updated 4 months ago
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆53Updated 5 years ago
- core of pkn game hacking project. Including mainly for process management, memory management, and DLL injecttion. Also PE analysis, windo…☆64Updated 5 years ago
- Code injection by hijacking threads in Windows 32-bit applications☆43Updated 6 years ago
- This is the first software system, which can detect a stealthy hypervisor and calculate several nested ones even under countermeasures.☆83Updated 9 years ago
- This is the P.O.C source for hooking the system calls on Windows 10 (1903) using it's dynamic trace feature weakness☆51Updated 5 years ago
- Capcom wrapper with safety in mind.☆79Updated 6 years ago
- ☆46Updated 3 years ago
- (DEPRECATED) A simple anti-anti debug library for Windows☆29Updated 4 years ago
- ☆66Updated 3 years ago
- POC of sysenter x64 LSTAR MSR hook☆38Updated 10 years ago
- C++ 17 compile time string encryption supporting vs2010-2019☆73Updated 4 years ago
- My take on the capcom driver vulnerability☆26Updated 7 years ago
- Another method to anti ThreadHideFromDebugger☆34Updated 5 years ago
- A simple library which provides a way to read and write the memory of other processes☆50Updated 6 years ago
- Figuring out the cause of a handle downgrade☆23Updated last year
- r0akmap is a PoC driver manual mapper based on r0ak☆39Updated 6 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆48Updated 3 years ago
- Resolve DOS MZ executable symbols at runtime☆93Updated 3 years ago
- Anti-Anti-VM solution via Windows Driver☆54Updated 6 years ago
- usermode standalone kernel interface☆110Updated 6 years ago
- This x64dbg plugin adds several commands for dumping PE header information by address.☆60Updated 7 years ago
- x64 syscall caller in C++.☆84Updated 6 years ago