h33p / kallsyms-mod
Access to kallsyms_lookup_name through the use of kernel livepatch interface
☆25Updated 3 years ago
Alternatives and similar repositories for kallsyms-mod:
Users that are interested in kallsyms-mod are comparing it to the libraries listed below
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 3 years ago
- Linux kernel hooking library☆18Updated 4 years ago
- Virtual machine with a custom instruction set in C☆16Updated 6 years ago
- Simple Demo of using Windows Hypervisor Platform☆27Updated 9 months ago
- ksocket: easy TCP/UDP networking in kernel space☆25Updated 3 years ago
- Plugin for x64Dbg adding Lua scripting.☆21Updated 5 years ago
- The sample DXE runtime driver demonstrating how to program DMA remapping.☆60Updated last year
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- A reflexive driver loader to bypass Windows DSE (featuring a custom PE loader)☆39Updated 6 years ago
- Inject shared object to running process in linux☆23Updated 5 years ago
- Native API header files for the Process Hacker project (nightly).☆25Updated this week
- A simple kernel mode driver that hooks some values at the KUSER_SHARED_DATA structure.☆25Updated 5 years ago
- Rust bindings for vmread☆15Updated 4 years ago
- Crash Windows 10 up to RS2 from an unprivileged process☆41Updated 7 years ago
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆32Updated 3 years ago
- A simple and heavily documented series of test hypervisors built for 64-bit Windows 10 systems running under Intel's VT-x☆29Updated 4 years ago
- ollvm 4.0 using clang 10.0.1☆13Updated 3 years ago
- A dynamically loadable virtual-machine based rootkit designed for Linux Kernel v5.13.0 using AMD-V (SVM).☆27Updated 2 years ago
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆71Updated 5 years ago
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- Example WDF/KMDF driver and test app demonstrating the "inverted call model"☆33Updated 4 years ago
- Zydis JavaScript bindings via WASM☆18Updated last year
- Code virtualizer☆23Updated 8 years ago
- Multicore x64 kernel with a focus on introspection and debugging capabilities.☆61Updated 6 months ago
- Windows sandbox PoC☆31Updated 4 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆42Updated last year
- A DLL that performs IAT hooking☆26Updated 6 years ago
- ☆19Updated 4 years ago
- A simple library which provides a way to read and write the memory of other processes☆51Updated 6 years ago