kagasu / VEHTest
Example of making debugger using Hardware Breakpoint + VEH
☆18Updated 3 years ago
Alternatives and similar repositories for VEHTest:
Users that are interested in VEHTest are comparing it to the libraries listed below
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated 2 years ago
- X86/X64 Hardware Breakpoint Manager☆41Updated 3 years ago
- Hijack NotifyRoutine for a kernelmode thread☆42Updated 2 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆44Updated 2 years ago
- ☆29Updated 2 years ago
- Injector with kernel power☆16Updated 4 years ago
- a driver to enumerate registered pnp callbacks for a particular interface class based on reversal of IoRegisterPlugPlayNotification☆11Updated last year
- Black Signature Driver☆23Updated last year
- ☆22Updated 2 years ago
- A project on the Unicorn emulator to emulate the code of Pe files in windows☆21Updated 7 months ago
- ☆27Updated last year
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆29Updated 2 years ago
- Not mine, just saved☆12Updated last year
- Illustrates the concept of return address spoofing, and how it is used.☆13Updated 4 years ago
- 对debughelp的二次开发☆11Updated 2 years ago
- Disk based DMA for ATA and SCSI☆23Updated last year
- Windows driver template, using C++20 & cmake & GithubActions☆22Updated 9 months ago
- Bypassing kernel patch protection runtime☆20Updated 2 years ago
- Logging library for kernel drivers written for the Windows NT operating system.☆19Updated 2 months ago
- Single header library to simplify the usage of direct syscalls. x64/x86☆11Updated 2 years ago
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- ☆27Updated 2 years ago
- ☆14Updated 4 years ago
- Bypasses for Windows kernel callbacks PatchGuard protection☆43Updated 3 years ago
- Open Anti Cheat☆27Updated 2 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆24Updated 3 years ago
- direct systemcalls with a modern c++20 interface.☆42Updated 2 years ago
- ☆24Updated last year
- A poc that abuses Enclave☆38Updated 2 years ago
- anti cheat drv open source☆16Updated last year