crtdll / bedaisy-reversal
Some psuedo snippets from BattlEye's BEDaisy.sys loaded on Rainbow Six: Siege.
☆121Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for bedaisy-reversal
- ☆132Updated 10 months ago
- Shows an example of how to implement VT-d/AMD-Vi on Windows☆81Updated last year
- This project will give you an example how you can hook a kernel vtable function that cannot be directly called☆80Updated 2 years ago
- Bypassing EasyAntiCheat.sys self-integrity by abusing call hierarchy☆78Updated 2 years ago
- Kernel Lazy Importer☆111Updated 7 months ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆80Updated last year
- a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.☆142Updated 2 months ago
- Standard Kernel Library for Windows hacking in C++☆91Updated 3 months ago
- Kernel driver that uses Shared memory to communicate with UserMode☆84Updated 5 years ago
- DWM Overlay without modify .text☆45Updated 2 months ago
- A PoC for requesting HWIDs directly from hardware, skipping any potential hooks or OS support.☆77Updated 3 years ago
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆110Updated 2 years ago
- A simple ida python script to find .data ptr☆47Updated last year
- ☆159Updated 2 years ago
- Windows X64 mode use seh in manual mapped dll or manual mapped sys☆67Updated 2 years ago
- a minimalistic windows hypervisor for amd processors☆98Updated 2 years ago
- ☆70Updated 2 years ago
- ☆86Updated 2 years ago
- ☆150Updated 6 months ago
- Kernel driver that .text hooks a syscall in dxgkrnl.sys which can be called from our user-mode client to send instructions like rpm/wpm a…☆147Updated last year
- Check your detection vectors☆137Updated this week
- ☆78Updated 3 years ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆70Updated last year
- ☆125Updated last year
- base for testing☆156Updated last month
- Static user/kernel mode library that allows access to all functions and global variables by extracting offsets from the PDB☆73Updated last year
- Intercepting DeviceControl via WPP☆128Updated 5 years ago