gognl / VMBR
A VMBR (Virtual-Machine Based Rootkit) which runs a guest OS and sends the attacker its data
☆26Updated 4 months ago
Related projects: ⓘ
- WinHvShellcodeEmulator (WHSE) is a shellcode emulator leveraging the Windows Hypervisor Platform API☆19Updated 2 years ago
- Based on nt5src☆15Updated last year
- ☆16Updated last year
- ☆15Updated last year
- Triton based symbolic emulator☆16Updated last year
- ☆14Updated last year
- ntos shit☆19Updated 7 months ago
- 参考taviso的代码逆向一下mpengine.dll☆19Updated 2 years ago
- Wow64 Heaven's Gate Hook☆25Updated 3 years ago
- ☆19Updated this week
- automates exploits using ROP chains, using ntdll-scraper☆16Updated 2 years ago
- ☆12Updated 2 years ago
- My try to implement a virtual CPU in C☆19Updated 10 months ago
- C/C++ antidebugging library for 32 and 64 bit processors☆10Updated 2 months ago
- Easily hook WIN32 x64 functions☆17Updated 3 years ago
- Load Dll into Kernel space☆39Updated 2 years ago
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆22Updated 7 years ago
- ☆21Updated last year
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated last year
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆14Updated last year
- windows kernel pagehook☆36Updated last year
- Portable & Custmizable Windows Defender☆10Updated 2 years ago
- ☆23Updated 6 months ago
- Windows driver template, using C++20 & cmake & GithubActions☆17Updated last month
- Bootkits☆18Updated last year
- 这篇文章的目的是介绍一款实验性项目基于COM命名管道或者Windows Hyper-V虚拟机Vmbus通道实现的运行在uefi上的windbg调试引擎开发心得☆40Updated 3 months ago
- Some drivers I've written while solving exercises from Practical Reverse Engineering☆13Updated 2 years ago
- intel vt-x hypervisor ept☆26Updated 4 years ago
- A years-old exploit of a local EoP vulnerability in Kingsoft Antivirus KWatch Driver version 2009.3.17.77.☆35Updated 2 years ago
- Dell Driver EoP (CVE-2021-21551)☆26Updated last year