A collection of c++ programs that demonstrate common ways to detect the presence of an attached debugger.
☆624Dec 28, 2021Updated 4 years ago
Alternatives and similar repositories for Anti-Debugging
Users that are interested in Anti-Debugging are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A bunch of Windows anti-debugging tricks for x86 and x64.☆817May 7, 2021Updated 5 years ago
- AntiDebugging sample sources written in C++☆349Jul 23, 2018Updated 8 years ago
- anti debugging library in c++.☆588Feb 6, 2024Updated 2 years ago
- library for importing functions from dlls in a hidden, reverse engineer unfriendly way☆1,918Aug 3, 2023Updated 3 years ago
- VMProtect 3.x Anti-debug Method Improved☆679May 11, 2019Updated 7 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Anti-cheat library for Windows C++☆509Jul 22, 2022Updated 4 years ago
- Compile-time, Usermode + Kernelmode, safe and lightweight string crypter library for C++11+☆836Jun 3, 2021Updated 5 years ago
- Library containing Anti-RE and Anti-Debug methods.☆121Apr 30, 2025Updated last year
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆632Mar 19, 2019Updated 7 years ago
- System call hook for Windows 10 20H1☆496Jun 26, 2021Updated 5 years ago
- Rendering on external windows via hijacking thread contexts☆405Jun 28, 2020Updated 6 years ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,303Apr 2, 2026Updated 4 months ago
- Hiding kernel-driver for x86/x64.☆2,818Jul 18, 2026Updated 3 weeks ago
- Literally, the perfect injector.☆994Apr 13, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Inline syscalls made easy for windows on clang☆740Jun 21, 2024Updated 2 years ago
- Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.☆7,082Jul 1, 2026Updated last month
- A dynamic VMP dumper and import fixer, powered by VTIL.☆1,401Nov 4, 2020Updated 5 years ago
- Manual mapping without creating any threads, with rw only access☆830Oct 29, 2019Updated 6 years ago
- Collection Of Anti-Debugging Tricks☆101Dec 19, 2015Updated 10 years ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆914Nov 21, 2019Updated 6 years ago
- DLL scatter manual mapper☆830Apr 10, 2021Updated 5 years ago
- Windows NT x64 syscall fuzzer☆641Apr 2, 2026Updated 4 months ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆566Jan 4, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- x64 binary obfuscator☆1,988Jul 14, 2023Updated 3 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆352Apr 27, 2020Updated 6 years ago
- Guided Hacking's official tool to practice bypassing anti-debug techniques.☆335May 16, 2025Updated last year
- Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module☆422Sep 9, 2018Updated 7 years ago
- Stealthy UM <-> KM communication system without creating any system threads, permanent hooks, driver objects, section objects or device o…☆389Apr 30, 2026Updated 3 months ago
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,295May 1, 2024Updated 2 years ago
- C++17 PE manualmapper☆472Oct 2, 2021Updated 4 years ago
- A basic Direct Kernel Object Manipulation rootkit that removes a process from the EPROCESS list, hiding it from the Task Manager☆705Mar 26, 2019Updated 7 years ago
- DLL that hooks the NtQuerySystemInformation API and hides a process name☆292May 12, 2023Updated 3 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Windows NT Syscall tables☆1,453Jul 4, 2026Updated last month
- Kernel Inject DLL☆350Mar 21, 2023Updated 3 years ago
- 🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc☆2,046Jul 13, 2022Updated 4 years ago
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,380Apr 18, 2026Updated 3 months ago
- C++20, x86/x64 Hooking Libary v2.0☆1,885Jun 29, 2026Updated last month
- Kernel LdrLoadDll injector☆268Oct 6, 2018Updated 7 years ago
- ice9 - is anticheat based on usermode tricks and undocumented methods , builded as dll for loading trought the shibari framework☆25Jan 30, 2025Updated last year