d35ha / xObf
Simple x86/x86_64 instruction level obfuscator based on a basic SBI engine
☆263Updated 2 years ago
Alternatives and similar repositories for xObf:
Users that are interested in xObf are comparing it to the libraries listed below
- x86 PE Mutator☆213Updated 2 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆265Updated 2 years ago
- Debugger Anti-Detection Benchmark☆305Updated last year
- Native code virtualizer for x64 binaries☆464Updated 2 months ago
- State of the art DLL injector that took 20 minutes to make☆209Updated last year
- Elevate a process to be a protected process☆144Updated 5 years ago
- Load your driver like win32k.sys☆252Updated 2 years ago
- An x86-64 Code Virtualizer☆231Updated 4 months ago
- Analyze patches in a process☆249Updated 3 years ago
- A mapper that maps shellcode into loaded large page drivers☆252Updated 2 years ago
- A modern c++ implementation of windows heavens gate☆215Updated 4 years ago
- x64 Windows PatchGuard bypass, register process-creation callbacks from unsigned code☆201Updated 3 years ago
- This tool will allow you to spoof the return addresses of your functions as well as system functions.☆439Updated 2 years ago
- ☆177Updated 3 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆88Updated last year
- Bypassing PatchGuard on modern x64 systems☆252Updated last year
- Browse Page Tables on Windows (Page Table Viewer)☆193Updated 2 years ago
- An Injector that can inject dll into game process protected by anti cheat using SetWindowsHookEx.☆243Updated 5 years ago
- Windows Kernel inject (no module no thread)☆269Updated 2 years ago
- C++ 17 or higher control flow obfuscation library for windows binaries☆337Updated 5 months ago
- Manual DLL Injector using Thread Hijacking.☆233Updated 7 years ago
- x86 Binary Code Virtualization Tool☆210Updated 2 weeks ago
- Vectored Exception Handling Hooking Class☆149Updated 6 years ago
- Simple Kernelmode DLL Injector with Manual mapping☆252Updated last year
- Kernel LdrLoadDll injector☆258Updated 6 years ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆273Updated last year
- ☆256Updated last month
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆527Updated last month
- Collection of hypervisor detections☆216Updated 4 months ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆278Updated 4 years ago