cocafe / physmem
Physical memory and MMIO read/write command line utility via asmmap64 on Windows
☆16Updated last year
Alternatives and similar repositories for physmem:
Users that are interested in physmem are comparing it to the libraries listed below
- Decrypting and intercepting encrypted imports of Vanguards Kernel Driver☆26Updated last year
- An improved Detours.☆63Updated 2 weeks ago
- Research on obfuscated licensing APIs / CLIP service in the Windows kernel☆111Updated 2 years ago
- Example of using Windows Platform Binary Table (WPBT)☆20Updated last year
- Windows Research Kernel VS2022 Solution☆30Updated 7 months ago
- ☆27Updated last year
- Native API header files for the Process Hacker project (nightly).☆26Updated this week
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆76Updated 2 years ago
- Example WDF/KMDF driver and test app demonstrating the "inverted call model"☆35Updated 4 years ago
- https://www.codeproject.com/Articles/5348168/Disable-Driver-Signature-Enforcement-with-DSE-Patc☆17Updated last year
- Port of zentool to Windows☆24Updated last month
- Lightweight x86-64 disassembling library☆41Updated 2 years ago
- A bunch of architectural headers for i386 and AMD64☆36Updated last year
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆77Updated last month
- Me fockin' pe protector☆45Updated 2 years ago
- Collection of Cheat dumps for Research and Detection.☆13Updated last week
- Visual Studio Project example for using Microsoft's STL in WDM (Windows Kernel-mode Driver)☆25Updated 3 years ago
- Elevate arbitrary MSR writes to kernel execution.☆33Updated last year
- Class Informer updated for 32bit targets in 64bit IDA 8.2+/9.0/9.1☆60Updated last week
- ☆45Updated 4 years ago
- windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking☆52Updated 2 years ago
- ☆36Updated last year
- Fork of Scylla with additional fixes and Python bindings.☆43Updated 9 months ago
- A c++20 constexpr x86 assembler☆57Updated 3 years ago
- The bootloader for the latest versions of Windows NT, Windows 8 to Windows 11.☆20Updated 5 years ago
- Debug Print viewer (user and kernel)☆66Updated last year
- Simple and lightweight hypervisor for AMD processors☆28Updated 4 months ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆69Updated last year
- Global DLL injector☆66Updated 3 years ago
- x86-64 user mode emulation using Zydis☆46Updated 3 months ago