kagurazakasanae / Mhyprot2DrvControl
A lib that allows using mhyprot2 driver for enum process modules, r/w process memory and kill process.
☆344Updated 4 years ago
Alternatives and similar repositories for Mhyprot2DrvControl:
Users that are interested in Mhyprot2DrvControl are comparing it to the libraries listed below
- A PoC for Mhyprot2.sys vulnerable driver that allowing read/write memory in kernel/user via unprivileged user process.☆324Updated 3 years ago
- A static library, wrapper for mhyprot vulnerable driver, execute exploits and tests☆128Updated 4 years ago
- Mhy Exp (exploit signed driver)☆140Updated 2 years ago
- Controlling Windows PP(L)s☆280Updated last year
- 一些使用过期或者注销证书的技术☆223Updated 5 years ago
- A simple commandline injector using classic DLL injection☆141Updated 2 years ago
- A user-mode emulator for the mhyprot2.sys driver☆115Updated 2 years ago
- Kernel driver loader using vulnerable gigabyte driver (https://www.secureauth.com/labs/advisories/gigabyte-drivers-elevation-privilege-vu…☆231Updated 3 years ago
- Use ICMLuaUtil to Bypass UAC!☆507Updated 4 years ago
- 内核级别隐藏指定窗口☆302Updated 2 years ago
- CVE-2023-34312☆420Updated last year
- 自建时间戳服务器实现伪签名驱动证书 Implementing Pseudo Signature with Self-Sign Timestamp Servers☆246Updated last month
- 隐藏可执行内存☆246Updated 11 months ago
- A PoC for vulnerable driver "mhyprot" that allows us to read/write memory in kernel/user from usermode.☆163Updated 4 years ago
- DSE bypass using a leaked cert and adjusting the current clock.☆146Updated 2 years ago
- shellcode 生成框架☆247Updated 2 years ago
- Retrieves exported functions from a legitimate DLL and generates a proxy DLL source code/template for DLL proxy loading or sideloading☆755Updated 4 years ago
- 将shellcode注入dwm.exe以进行屏幕截取☆308Updated 2 years ago
- Signtool for expired certificates☆465Updated last year
- X86 version of syswhispers2 / x86 direct system call☆322Updated 4 years ago
- PE loader with various shellcode injection techniques☆397Updated 2 years ago
- A flexible PE loader, loading module in memory. Most of the functions can be inline, compatible for shellcode.☆176Updated 3 months ago
- 火绒剑独立版☆349Updated 7 months ago
- Yet another llvm based obfuscator based on goron.☆438Updated last month
- 研究和移除各种内核回调,在anti anti cheat的路上越走越远☆171Updated 2 years ago
- ☆301Updated 2 years ago
- Exploiting DLL Hijacking by DLL Proxying Super Easily☆477Updated last year
- windows pe packing☆110Updated 2 years ago
- A way to delete a locked file, or current running executable, on disk.☆510Updated 6 months ago
- Radical Windows ARK☆220Updated last month