heyheysky / vulnerable-driverLinks
☆22Updated last year
Alternatives and similar repositories for vulnerable-driver
Users that are interested in vulnerable-driver are comparing it to the libraries listed below
Sorting:
- This repo contains EXPs about Vulnerable Windows Driver☆47Updated last year
- A serie of exploits targeting eneio64.sys - Turning Physical Memory R/W into Virtual Memory R/W☆108Updated 2 months ago
- ☆63Updated 2 years ago
- bootkit驱动映射,三环进程注入加载指定模块☆14Updated last year
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆131Updated 2 years ago
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆284Updated last month
- Create stealthy, inline, EPT-like hooks using SMAP and SMEP☆60Updated last year
- Windows 11 24H2-25H2 Runtime PatchGuard Bypass☆238Updated 2 months ago
- windows rootkit☆60Updated last year
- PoC exploit for HP Hardware Diagnostic's EtdSupp driver☆49Updated 2 years ago
- An x86-64 code virtualizer for VM based obfuscation☆160Updated last year
- Hook all callbacks which are registered with LdrRegisterDllNotification☆96Updated 9 months ago
- An extended proof-of-concept for the CVE-2021-21551 Dell ‘dbutil_2_3.sys’ Kernel Exploit☆24Updated 4 years ago
- A native Windows library for intercepting kernel-to-user transitions using instrumentation callbacks☆27Updated last year
- Walks the CFG bitmap to find previously executable but currently hidden shellcode regions☆129Updated 2 years ago
- A basic implementation of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆73Updated 9 months ago
- spoof return address☆79Updated 2 years ago
- Heaven's Gate implementation in C for constructing x64 Win32 API call in x86 WoW64 processes.☆77Updated 4 years ago
- browse microsoft driver server for potentially vulnerable drivers☆29Updated last year
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆79Updated 3 years ago
- Windows 11 kernel research framework demonstrating DSE bypass on Windows 11 25H2 through boot-time execution. Loads unsigned drivers by s…☆68Updated 3 weeks ago
- C++ macro for x64 programs that breaks ida hex-rays decompiler tool.☆137Updated last year
- vm_str.hpp is a header only string obfuscator.☆101Updated 4 months ago
- A Windows PE loader / manual mapper for executables (x86 and x64) with full TLS (Thread Local Storage) support.☆83Updated 2 months ago
- Finding Truth in the Shadows☆120Updated 2 years ago
- ntoskrnl .data hooks for UM-KM communication☆52Updated last year
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆69Updated 4 months ago
- DSE & PG bypass via BYOVD attack☆77Updated 6 months ago
- Reimplement CreateProcessInternalW via Windows 10 20H1+/Windows 11 Base on NtCreateUserProcess-Post☆76Updated last year
- using wnbios64.sys for arbitrary r/w☆15Updated 3 months ago