A collection of c++ programs that demonstrate common ways to detect the presence of an attached debugger.
☆622Dec 28, 2021Updated 4 years ago
Alternatives and similar repositories for Anti-Debugging
Users that are interested in Anti-Debugging are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A bunch of Windows anti-debugging tricks for x86 and x64.☆814May 7, 2021Updated 5 years ago
- AntiDebugging sample sources written in C++☆349Jul 23, 2018Updated 7 years ago
- anti debugging library in c++.☆582Feb 6, 2024Updated 2 years ago
- library for importing functions from dlls in a hidden, reverse engineer unfriendly way☆1,921Aug 3, 2023Updated 2 years ago
- VMProtect 3.x Anti-debug Method Improved☆666May 11, 2019Updated 7 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Anti-cheat library for Windows C++☆503Jul 22, 2022Updated 3 years ago
- Compile-time, Usermode + Kernelmode, safe and lightweight string crypter library for C++11+☆826Jun 3, 2021Updated 4 years ago
- Library containing Anti-RE and Anti-Debug methods.☆121Apr 30, 2025Updated last year
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆632Mar 19, 2019Updated 7 years ago
- System call hook for Windows 10 20H1☆494Jun 26, 2021Updated 4 years ago
- Rendering on external windows via hijacking thread contexts☆404Jun 28, 2020Updated 5 years ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,293Apr 2, 2026Updated last month
- Hiding kernel-driver for x86/x64.☆2,713Sep 2, 2025Updated 8 months ago
- Literally, the perfect injector.☆992Apr 13, 2023Updated 3 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Inline syscalls made easy for windows on clang☆736Jun 21, 2024Updated last year
- Collection Of Anti-Debugging Tricks☆100Dec 19, 2015Updated 10 years ago
- Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.☆6,962Apr 1, 2026Updated last month
- Manual mapping without creating any threads, with rw only access☆814Oct 29, 2019Updated 6 years ago
- A dynamic VMP dumper and import fixer, powered by VTIL.☆1,358Nov 4, 2020Updated 5 years ago
- DLL scatter manual mapper☆822Apr 10, 2021Updated 5 years ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆906Nov 21, 2019Updated 6 years ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆568Jan 4, 2025Updated last year
- Windows NT x64 syscall fuzzer☆639Apr 2, 2026Updated last month
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Guided Hacking's official tool to practice bypassing anti-debug techniques.☆332May 16, 2025Updated last year
- x64 binary obfuscator☆1,975Jul 14, 2023Updated 2 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆348Apr 27, 2020Updated 6 years ago
- Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module☆421Sep 9, 2018Updated 7 years ago
- Stealthy UM <-> KM communication system without creating any system threads, permanent hooks, driver objects, section objects or device o…☆386Apr 30, 2026Updated 2 weeks ago
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,288May 1, 2024Updated 2 years ago
- A basic Direct Kernel Object Manipulation rootkit that removes a process from the EPROCESS list, hiding it from the Task Manager☆697Mar 26, 2019Updated 7 years ago
- Windows NT Syscall tables☆1,419May 9, 2026Updated last week
- C++17 PE manualmapper☆452Oct 2, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- DLL that hooks the NtQuerySystemInformation API and hides a process name☆298May 12, 2023Updated 3 years ago
- Kernel Inject DLL☆351Mar 21, 2023Updated 3 years ago
- 🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc☆2,017Jul 13, 2022Updated 3 years ago
- Kernel LdrLoadDll injector☆269Oct 6, 2018Updated 7 years ago
- C++20, x86/x64 Hooking Libary v2.0☆1,855Nov 16, 2025Updated 6 months ago
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,356Apr 18, 2026Updated last month
- Windows kernel hacking framework, driver template, hypervisor and API written on C++☆1,812Nov 12, 2023Updated 2 years ago