armvirus / VanguardTrace
Decrypting and intercepting encrypted imports of Vanguards Kernel Driver
☆26Updated last year
Alternatives and similar repositories for VanguardTrace
Users that are interested in VanguardTrace are comparing it to the libraries listed below
Sorting:
- ☆43Updated 10 months ago
- ☆30Updated 7 months ago
- C/C++ antidebugging library for Windows☆21Updated 4 months ago
- ☆41Updated 2 years ago
- Using MMIO (Memory-Mapped I/O) to read TPM 2.0 public Endorsement Key.☆40Updated 11 months ago
- This driver hooks a device object for ioctl and uses mdls to allocate physical pages and manually injects an entry into a process's page …☆14Updated 2 years ago
- partially disable patchguard up to win11 21H2☆18Updated 11 months ago
- Cheat for my own game SecureGame which uses a bootkit to hyperjack Hyper-V in order to access VBS enclave's memory☆55Updated 5 months ago
- cr3 shuffle driver☆39Updated last year
- Windows driver mapper via the UEFI☆43Updated last month
- POC Hook of nt!HvcallCodeVa☆51Updated 2 years ago
- just proof of concept. hooking MmCopyMemory PG safe.☆70Updated last year
- clearing traces of a loaded driver☆47Updated 2 years ago
- An advanced DKOM for drivers with "DRIVER_OBJECT"☆17Updated 2 years ago
- This is a POC Test project for INTEL CPUs on blocking NMI Entries through the IDT Handler.☆50Updated 7 months ago
- Load driver on boot before anti-cheats☆32Updated last year
- ☆30Updated 2 years ago
- Old way for blocking NMI interrupts☆26Updated 2 years ago
- ☆30Updated last year
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆32Updated last year
- How to use PiDqSerializationWrite. Introduces how to safely read and write from mapped driver☆18Updated last year
- Library to manipulate drivers that expose a physical memory read/write primitive.☆27Updated last year
- POC kernel driver with hidden system thread☆14Updated last year
- POC Windows kernel driver that spoofs threads for NMI callbacks on x86-64.☆19Updated last month
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆52Updated 3 years ago
- A intel hypervisor, implementing many virtualization techniques☆43Updated 2 years ago
- ☆25Updated last year
- 将驱动映射到会话空间☆34Updated 2 years ago
- Fixes the "Device\Nal is already in use" error on kdmapper.☆21Updated 2 years ago
- A method to Disable DSE using .data ptr hooks☆30Updated last year