jnastarot / shibari
Library for linking multiple PE\PE + files to one
☆51Updated last year
Alternatives and similar repositories for shibari:
Users that are interested in shibari are comparing it to the libraries listed below
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆44Updated 2 years ago
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- Code injection by hijacking threads in Windows 32-bit applications☆43Updated 6 years ago
- Debug Print viewer (user and kernel)☆66Updated last year
- Static Library For Windows Drivers☆33Updated 2 months ago
- PE(compressed dll) memory loader using nt api☆44Updated 7 years ago
- X86/X64 Hardware Breakpoint Manager☆41Updated 3 years ago
- Library for using direct system calls☆35Updated 3 months ago
- Example of hijacking system calls via function pointer tables☆31Updated 3 years ago
- Stealthy Injector that leverages a vulnerable driver and other exploits to remain undetected☆36Updated 6 years ago
- force delete runing .exe application file.or delete any locked file☆69Updated 2 years ago
- Example Windows Kernel-mode Driver which enumerates running processes.☆55Updated 2 years ago
- A poc that abuses Enclave☆38Updated 2 years ago
- ☆48Updated 6 years ago
- Windows driver including couple different techniques for file removal when regular operation isn't possible.☆69Updated 9 years ago
- direct systemcalls with a modern c++20 interface.☆42Updated 2 years ago
- PAGE_GUARD based hooking library☆43Updated 2 years ago
- Some garbage drivers written for getting started☆64Updated 5 years ago
- too busy for that all, furikuri is framework for code protection☆160Updated 5 years ago
- NT reversal☆25Updated 6 years ago
- Manual PE image mapper☆64Updated 11 years ago
- x64 assembler library☆31Updated 10 months ago
- Another method to anti ThreadHideFromDebugger☆36Updated 6 years ago
- c++ implementation of windows heavens gate☆68Updated 4 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆49Updated 4 years ago
- Injector with kernel power☆16Updated 4 years ago
- GUI Kernel driver process protect tool☆37Updated 6 years ago
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated 2 years ago
- win32/x64 obfuscate framework☆32Updated 6 years ago
- Bypass using kernel driver (not finish).☆20Updated 2 years ago