fobricia / KsDumperLinks
Dumping processes using the power of kernel space !
☆19Updated 5 years ago
Alternatives and similar repositories for KsDumper
Users that are interested in KsDumper are comparing it to the libraries listed below
Sorting:
- 研究和移除各种内核回调,在anti anti cheat的路上越走越远☆177Updated 2 years ago
- 滥用cow机制进行全局注入☆98Updated 4 years ago
- Kernel shellcode injector☆143Updated 4 years ago
- CVE-2022-3699 with arbitrary kernel code execution capability☆71Updated 2 years ago
- 利用物理内存映射,实现虚拟内存的伪隐藏☆83Updated 2 years ago
- 无痕注入1☆76Updated 4 years ago
- Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL☆216Updated 4 years ago
- 内存加载DLL 支持X86和X64(Memory PELoader Support X86 and X64)☆35Updated last year
- Inline syscalls made for MSVC supporting x64 and WOW64☆182Updated 2 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆95Updated 2 years ago
- 驱动加载器 -> 利用iqvw64e.sys映射驱动☆56Updated 4 years ago
- sc4cpp is a shellcode framework based on C++☆90Updated 3 years ago
- 内核级别隐藏指定窗口☆58Updated 3 years ago
- NO WriteProcessMemory CreateRemoteThread APIs call shellcode injection☆30Updated 5 years ago
- Hide DLL / Hide Module / Hide Dynamic Link Library☆107Updated 6 years ago
- Manual DLL Injector using Thread Hijacking.☆238Updated 7 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆108Updated 3 years ago
- Kernel driver loader using vulnerable gigabyte driver (https://www.secureauth.com/labs/advisories/gigabyte-drivers-elevation-privilege-vu…☆250Updated 3 years ago
- PoC: Exploit 32-bit Thread Snapshot of WOW64 to Take Over $RIP & Inject & Bypass Antivirus HIPS (HITB 2021)☆162Updated 4 years ago
- LSASS INJECTOR☆35Updated 6 years ago
- A simple tool to assemble shellcode ready to be copy-pasted into code☆69Updated 3 years ago
- A quick-and-dirty anti-hook library proof of concept.☆104Updated 6 years ago
- Dynamically generated obfuscated jumps and/or function calls☆36Updated 2 years ago
- A simple program to obfuscate code written in cpp.☆50Updated last year
- Convert PE files to a shellcode☆78Updated 5 years ago
- Code for Battleyes shellcode☆230Updated 3 years ago
- Kernel LdrLoadDll injector☆261Updated 6 years ago
- 不使用3环挂钩进行DWM桌面绘制☆82Updated 3 years ago
- Load your driver like win32k.sys☆255Updated 2 years ago
- A simple direct syscall wrapper written in C++ with compatibility for x86 and x64 programs.☆53Updated 5 months ago