benheise / KUCSharedMemory
Kernel<->Usermode shared memory communcation using manually mapped driver
☆14Updated 3 years ago
Alternatives and similar repositories for KUCSharedMemory:
Users that are interested in KUCSharedMemory are comparing it to the libraries listed below
- A simple MmCopyMemory hook.☆37Updated 2 years ago
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆32Updated last year
- ☆53Updated 2 years ago
- Secure Hyper-Visor Injector for Easy Anti Cheat, Battleye | that supports amd + intel | Undetected + Active updates☆18Updated 2 years ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆71Updated last year
- ☆30Updated 2 years ago
- UM-KM Communication using registry callbacks☆39Updated 4 years ago
- POC Hook of nt!HvcallCodeVa☆50Updated last year
- Mapping your code on a 0x1000 size page☆72Updated 2 years ago
- An advanced DKOM for drivers with "DRIVER_OBJECT"☆16Updated 2 years ago
- This is an EfiGuard BootLoader that can boot EfiGuard from Usermode with no USB or Setup as a Single Executable with automatic File Dumpi…☆48Updated 6 months ago
- clearing traces of a loaded driver☆47Updated 2 years ago
- ☆48Updated last year
- ☆41Updated last year
- ntoskrnl .data hooks for UM-KM communication☆37Updated 10 months ago
- Experiment with PAGE_GUARD protection to hide memory from other processes☆44Updated 9 months ago
- Old project (2020) reformed. Modifies gRT->GetVariable sub function from EFI_APPLICATION. Tested on Win10 22H2 (AMD).☆50Updated last year
- POC kernel driver with hidden system thread☆14Updated 10 months ago
- ☆56Updated last year
- Made by scammer so i leak for free ! have fun☆56Updated 2 years ago
- ☆42Updated 3 years ago
- The sequel to Voyager☆42Updated 7 months ago
- bypass to the p2c(s) that I have run over the past few months.☆50Updated 2 years ago
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆31Updated 5 months ago
- Execute anything in a legit memory region by attacking a windows driver☆19Updated last year
- ☆54Updated 2 years ago
- ☆73Updated 11 months ago
- Hiding a system thread against conventional means of detection☆39Updated 4 years ago
- KDM Is a driver that will dumps every drivers that got manually mapped with kdmapper.☆53Updated 2 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆84Updated last year