kagurazakasanae / Mhyprot2DrvControlLinks
A lib that allows using mhyprot2 driver for enum process modules, r/w process memory and kill process.
☆352Updated 4 years ago
Alternatives and similar repositories for Mhyprot2DrvControl
Users that are interested in Mhyprot2DrvControl are comparing it to the libraries listed below
Sorting:
- A PoC for Mhyprot2.sys vulnerable driver that allowing read/write memory in kernel/user via unprivileged user process.☆338Updated 4 years ago
- A static library, wrapper for mhyprot vulnerable driver, execute exploits and tests☆129Updated 4 years ago
- Mhy Exp (exploit signed driver)☆142Updated 3 years ago
- 一些使用过期或者注销证书的技术☆271Updated 6 years ago
- CVE-2023-34312☆421Updated 2 years ago
- Controlling Windows PP(L)s☆339Updated 2 years ago
- 自建时间戳服务器实现伪签名驱动证书 Implementing Pseudo Signature with Self-Sign Timestamp Servers☆333Updated 3 months ago
- 内核级别隐藏指定窗口☆317Updated 3 years ago
- Use ICMLuaUtil to Bypass UAC!☆577Updated 5 years ago
- 火绒剑独立版☆383Updated last year
- 复现K360☆10Updated 4 months ago
- PE Injection、DLL Injection、Process Injection、Thread Injection、Code Injection、Shellcode Injection、ELF Injection、Dylib Injection, including…☆538Updated 5 years ago
- 隐藏可执行内存☆262Updated 3 months ago
- A user-mode emulator for the mhyprot2.sys driver☆115Updated 2 years ago
- Kernel driver loader using vulnerable gigabyte driver (https://www.secureauth.com/labs/advisories/gigabyte-drivers-elevation-privilege-vu…☆253Updated 3 years ago
- PE loader with various shellcode injection techniques☆427Updated 2 years ago
- ☆528Updated 5 years ago
- X86 version of syswhispers2 / x86 direct system call☆325Updated 4 years ago
- A simple commandline injector using classic DLL injection☆151Updated 3 years ago
- ☆312Updated 3 years ago
- 查找并使用PspTerminateThreadByPointer函数强制结束进程可以杀360进程 https://www.writebug.com/git/Demon-Gan-123/ring0-force-kill-process.git☆14Updated 2 years ago
- ☆12Updated 2 years ago
- 研究和移除各种内核回调,在anti anti cheat的路上越走越远☆178Updated 2 years ago
- shellcode 生成框架☆272Updated 3 years ago
- Windows对抗沙箱和虚拟机的方法总结☆399Updated 5 years ago
- SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature…☆1,181Updated last year
- DSE bypass using a leaked cert and adjusting the current clock.☆150Updated 2 years ago
- Huorong Internet Security vulnerabilities 火绒安全软件漏洞☆112Updated 5 years ago
- A flexible PE loader, loading module in memory. Most of the functions can be inline, compatible for shellcode.☆202Updated 2 months ago
- VM一键加壳/脱壳,全压缩,反调试等☆308Updated last year