windows syscalls with a single line and a high level of abstraction. has modern cpp20 wrappers and utilities, range-based DLL and export enumeration, wrapper around KUSER_SHARED_DATA. supported compilers: clang, gcc and msvc
☆226Nov 2, 2025Updated 3 months ago
Alternatives and similar repositories for shadow_syscall
Users that are interested in shadow_syscall are comparing it to the libraries listed below
Sorting:
- Lazy Import technique implementation to call any import in the runtime☆28Jun 16, 2024Updated last year
- An x86-64 Code Virtualizer☆304Sep 26, 2024Updated last year
- A cross-platform set of c++23 utilities☆37Oct 21, 2025Updated 4 months ago
- modern c++ wrapper around the microsoft portable executable file format☆36Nov 22, 2025Updated 3 months ago
- Fumo Loader - All in one kernel-based DLL injector☆364Jan 1, 2025Updated last year
- C++ 20 Control Flow Obfuscation library for Windows Binaries☆434Oct 8, 2025Updated 4 months ago
- A demonstration of hooking into the VMProtect-2 virtual machine☆24Nov 9, 2023Updated 2 years ago
- This tool will allow you to spoof the return addresses of your functions as well as system functions.☆550Nov 12, 2022Updated 3 years ago
- PE (and elf now!) bin2bin obfuscator☆815Oct 11, 2025Updated 4 months ago
- PoC kernel to usermode injection☆105Feb 26, 2024Updated 2 years ago
- Anti-cheat library for Windows C++☆496Jul 22, 2022Updated 3 years ago
- Minimalistic AMD-V/SVM hypervisor with memory introspection capabilities☆372Feb 26, 2025Updated last year
- Manual mapping without creating any threads, with rw only access☆805Oct 29, 2019Updated 6 years ago
- Standard Kernel Library for Windows manipulation in C++☆199Jun 18, 2025Updated 8 months ago
- obfuscated any constant encryption in compile time on any platform☆528Apr 25, 2023Updated 2 years ago
- Stealthy UM <-> KM communication system without creating any system threads, permanent hooks, driver objects, section objects or device o…☆379Mar 15, 2024Updated last year
- Kernel-mode Paravirtualization in Ring 2, LLVM based linker, and some other things!☆409Apr 19, 2025Updated 10 months ago
- Leveraging Platform Trust Technology (PTT) to defeat Driver Signing Enforcement (DSE) to run Kernel Drivers (KMDF) with Secure Boot Enabl…☆14Aug 22, 2022Updated 3 years ago
- Loads a signed kernel driver which allows you to map any driver to kernel mode without any traces of the signed / mapped driver.☆382Aug 8, 2021Updated 4 years ago
- etw hook (syscall/infinity hook) compatible with the latest Windows version of PG☆324Apr 27, 2024Updated last year
- Native code virtualizer for x64 binaries☆517Dec 20, 2024Updated last year
- Obfusheader.h is a portable header file for C++14 compile-time obfuscation.☆976Aug 19, 2024Updated last year
- A library to assist with memory & code protection.☆66Mar 7, 2024Updated last year
- A Windows Direct Syscall Library☆52Apr 23, 2025Updated 10 months ago
- A modern C++20 header-only library for advanced direct system call invocation.☆166Jan 17, 2026Updated last month
- Inline syscalls made easy for windows on clang☆736Jun 21, 2024Updated last year
- ☆360May 11, 2025Updated 9 months ago
- A project on the Unicorn emulator to emulate the code of Pe files in windows☆28Sep 12, 2024Updated last year
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆632Mar 19, 2019Updated 6 years ago
- x86-64 code/pe virtualizer☆206Dec 2, 2024Updated last year
- UltimateAnticheat is an open source usermode anti-cheat system made to detect and prevent common attack vectors in game cheating (C++, Wi…☆583Oct 29, 2025Updated 4 months ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆386Jul 6, 2022Updated 3 years ago
- DLL scatter manual mapper☆811Apr 10, 2021Updated 4 years ago
- Compile-Time Strings and Numbers Encryption for C++20☆59Feb 9, 2025Updated last year
- A simple present scene, kernel allocation injector.☆27Jun 12, 2022Updated 3 years ago
- Abusing nvidia driver (nvoclock.sys) for physical/virtual memory and control register manipulation.☆276Aug 25, 2023Updated 2 years ago
- Module extending manual mapper☆382Mar 28, 2020Updated 5 years ago
- HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate oper…☆376Jun 3, 2023Updated 2 years ago
- ☆18Jan 11, 2026Updated last month