can1357 / rpmalloc
☆13Updated last month
Related projects ⓘ
Alternatives and complementary repositories for rpmalloc
- Sample for Creating a new kernel object type and supporting API☆22Updated 2 months ago
- Windows kernel driver template for cmkr (with testsigning).☆30Updated last year
- Debug Print viewer (user and kernel)☆63Updated 9 months ago
- Windows PDB parser for kernel-mode environment.☆90Updated last year
- ☆24Updated last month
- ntoskrnl .data hooks for UM-KM communication☆34Updated 5 months ago
- silence file system monitoring components by hooking their minifilters☆51Updated 9 months ago
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆46Updated last year
- ☆12Updated 7 months ago
- SetWinEventHook Sample☆41Updated last year
- Easy encrypt/decrypt data with TPM☆24Updated 8 months ago
- Lightweight PDB symbol parser and resolver☆24Updated 3 weeks ago
- Me fockin' pe protector☆45Updated 2 years ago
- Example of building an application verifer DLL☆44Updated 5 months ago
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated last year
- micro lua☆16Updated last month
- DSE & PG bypass via BYOVD attack☆37Updated 7 months ago
- PoC kernel to usermode injection☆60Updated 8 months ago
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆24Updated last month
- C/C++ antidebugging library for 32 and 64 bit processors☆12Updated 4 months ago
- Kernel Level NMI Callback Blocker☆36Updated 2 months ago
- Compileable POC of namazso's x64 return address spoofer.☆47Updated 4 years ago
- A method to Disable DSE using .data ptr hooks☆26Updated 9 months ago
- POC Hook of nt!HvcallCodeVa☆50Updated last year
- Kernel ReClassEx☆63Updated last year
- Using MMIO (Memory-Mapped I/O) to read TPM 2.0 public Endorsement Key.☆39Updated 5 months ago
- Provides commands to read from and write to arbitrary kernel-mode memory for users with the Administrator privilege. HVCI compatible. No …☆15Updated 5 months ago
- Standalone API for Binary Ninja's LLIL☆15Updated 3 months ago
- A native Windows library for intercepting kernel-to-user transitions using instrumentation callbacks☆16Updated 9 months ago
- Bypassing kernel patch protection runtime☆19Updated last year