idkhidden / winapipatcherLinks
WinApi Patcher is a straightforward tool leveraging windows API hooking to patch and modify certain behaviors in a targeted environment.
☆44Updated 11 months ago
Alternatives and similar repositories for winapipatcher
Users that are interested in winapipatcher are comparing it to the libraries listed below
Sorting:
- codecave hook reverse engineering toolkit.☆37Updated last year
- spoof return address☆77Updated 2 years ago
- Exploit for eneio64.sys - Turning Physical Memory R/W into Virtual Memory R/W☆90Updated last week
- Scan for potentially vulnerable drivers☆90Updated 3 years ago
- A C++17 framework designed to enable obfuscation of constants, variables, and strings.☆22Updated last year
- Fully working kernel-mode VAC bypass☆85Updated 6 months ago
- An improved version of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆72Updated 5 months ago
- DSE & PG bypass via BYOVD attack☆62Updated 2 months ago
- ntoskrnl .data hooks for UM-KM communication☆51Updated last year
- ANY.RUN sandbox detection collection☆21Updated last year
- Using c++23 compile-time magic to produce obfuscated PIC strings and arrays.☆29Updated last year
- Windows 11 24H2 Runtime PatchGuard Bypass☆182Updated this week
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆157Updated 2 years ago
- kernel-mode DLL Injector☆110Updated 4 months ago
- Tool to dump EFI runtime drivers.☆37Updated last year
- A windows kernel mode driver that spoofs serial numbers when mapped and executes a malicious payload (FULLY from kernel!!!)☆33Updated 11 months ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆130Updated 2 years ago
- ☆46Updated 7 months ago
- Windows syscall SDK with dynamic offset resolution, validation, obfuscation, and multi language bindings. Bypass API hooks across differe…☆46Updated 2 weeks ago
- Research of modifying exported function names at runtime (C/C++, Windows)☆17Updated last year
- Load dll with undocumented functions and debug symbols☆47Updated last year
- A universal binary patching dll.☆95Updated 11 months ago
- Makes IDA (most versions) to crash upon opening it.☆101Updated last year
- Proof-of-concept kernel driver that hijacks the Windows kernel extension table mechanism to preserve process notify callbacks even when a…☆89Updated 2 months ago
- Compileable POC of namazso's x64 return address spoofer.☆50Updated 5 years ago
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆71Updated 2 years ago
- A journal for $6,000 Riot Vanguard bounty.☆65Updated last year
- PoC exploit for HP Hardware Diagnostic's EtdSupp driver☆50Updated 2 years ago
- PoC Anti-Rootkit/Anti-Cheat Driver.☆218Updated 4 months ago
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆80Updated 2 months ago