以shellcode注入其它驱动执行,躲避驱动签名检测,曾pubg项目中使用,,,当然现在,,,
☆27Oct 19, 2022Updated 3 years ago
Alternatives and similar repositories for DriverNoImage
Users that are interested in DriverNoImage are comparing it to the libraries listed below
Sorting:
- Hook NtDeviceIoControlFile with PatchGuard☆107May 10, 2022Updated 3 years ago
- R3劫持所有异常☆15Jan 4, 2021Updated 5 years ago
- A simple present scene, kernel allocation injector.☆27Jun 12, 2022Updated 3 years ago
- Code Integrity Violation Spotter☆17Jun 11, 2024Updated last year
- a dumb rpm/wpm example driver☆15Jun 7, 2021Updated 4 years ago
- Decrypts multiple BattlEye packets from BEService<>BEDaisy (including those with multiple encryption layers) out to a console.☆27Apr 14, 2022Updated 3 years ago
- page table manipulation to gain physical r/w☆44May 7, 2024Updated last year
- Interprocess communication library, providing the ability to call functions from each other☆20Oct 3, 2019Updated 6 years ago
- Convert any binary to a C-style array☆25Aug 24, 2021Updated 4 years ago
- ☆49Feb 21, 2022Updated 4 years ago
- How to use PiDqSerializationWrite. Introduces how to safely read and write from mapped driver☆26May 29, 2023Updated 2 years ago
- ☆23May 8, 2023Updated 2 years ago
- ☆25Aug 7, 2023Updated 2 years ago
- ☆23Jul 24, 2023Updated 2 years ago
- External Hooking ( Bypasss process byte patching checks | Injector included )☆22Mar 12, 2023Updated 2 years ago
- Black Signature Driver☆24Oct 20, 2023Updated 2 years ago
- Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL☆219Nov 12, 2020Updated 5 years ago
- The modifyed cjson that can running on windows kernel☆15Mar 21, 2023Updated 2 years ago
- ☆15Aug 17, 2023Updated 2 years ago
- My Personal Kernel-Mode Process dumper☆13Feb 18, 2024Updated 2 years ago
- Rendering on external windows via hijacking thread contexts, with notes on ValidateHwnd☆14Jul 9, 2020Updated 5 years ago
- ☆16Apr 10, 2025Updated 10 months ago
- Demonstrate the new FileDispositionInfoEx behavior☆15Nov 6, 2017Updated 8 years ago
- ☆15Mar 28, 2015Updated 10 years ago
- ☆17Jun 30, 2020Updated 5 years ago
- A simple example how to decrypt kernel debugger data block☆32Feb 8, 2021Updated 5 years ago
- Windows Kernel Driver dlls injector using APC☆64Aug 11, 2018Updated 7 years ago
- POC usermode <=> kernel communication via ALPC.☆72Jun 6, 2024Updated last year
- 关闭恶意驱动的文件和注册表保护☆14Jun 28, 2022Updated 3 years ago
- ☆10Nov 11, 2020Updated 5 years ago
- A minimal CR3 protection PoC (KdpTrap hook)☆15Jan 25, 2025Updated last year
- ☆12Apr 12, 2024Updated last year
- ☆12Sep 22, 2021Updated 4 years ago
- Detect removed thread from PspCidTable.☆75Mar 18, 2022Updated 3 years ago
- Bypass UAC elevation on Windows 8 (build 9600) & above.☆58Feb 2, 2026Updated last month
- Miscellaneous Code and Docs☆83Jul 12, 2025Updated 7 months ago
- ☆37Feb 11, 2023Updated 3 years ago
- ☆24May 17, 2022Updated 3 years ago
- ☆35Oct 18, 2022Updated 3 years ago