A kernel module dumper for Windows x64 using mhyprot vulnerable driver
☆36Oct 26, 2020Updated 5 years ago
Alternatives and similar repositories for kdump
Users that are interested in kdump are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- x64 Windows privilege elevation using anycall☆22May 28, 2021Updated 5 years ago
- Bypasses for Windows kernel callbacks PatchGuard protection☆44Aug 15, 2021Updated 5 years ago
- A specially crafted IOCTL can be issued to the rzpnk.sys driver in Razer Synapse 2.20.15.1104 that is forwarded to ZwOpenProcess allowing…☆13Nov 8, 2020Updated 5 years ago
- POC Hook of nt!HvcallCodeVa☆53May 8, 2023Updated 3 years ago
- Hijack NotifyRoutine for a kernelmode thread☆38Jun 4, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Two PoC of accessing process virtual memory via NT Kernel☆21Jun 25, 2021Updated 5 years ago
- ASUSTeK AsIO3 I/O driver unlock☆23Apr 22, 2021Updated 5 years ago
- Old way for blocking NMI interrupts☆28Sep 6, 2022Updated 3 years ago
- UM-KM Communication using registry callbacks☆39Jun 8, 2020Updated 6 years ago
- Just another .data pointer hook. This time it's hooking AfdIrpCallDispatch within Afd.sys☆11Feb 22, 2022Updated 4 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆51Mar 11, 2021Updated 5 years ago
- Mapping your code on a 0x1000 size page☆70May 20, 2022Updated 4 years ago
- ☆14May 10, 2021Updated 5 years ago
- Windows system spy for Mouse, Keyboard and Gamepad(Joystick).☆15Jul 6, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- just proof of concept. hooking MmCopyMemory PG safe.☆92Nov 13, 2023Updated 2 years ago
- I've developed a rather effective driver for DLL injection targeting EAC Protected Games, and since i dont care for any notable games uti…☆108Apr 24, 2024Updated 2 years ago
- i stole this from some guys private repo on github☆57Jul 11, 2021Updated 5 years ago
- ☆35Mar 19, 2019Updated 7 years ago
- ☆19Jan 17, 2021Updated 5 years ago
- A simple kernel-level plugin for ReClass.NET☆36May 15, 2018Updated 8 years ago
- ☆45Oct 19, 2021Updated 4 years ago
- old bypass☆34Aug 26, 2018Updated 7 years ago
- x64 Windows implementation of virtual-address to physical-address translation☆54Jun 3, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- This project will give you an example how you can hook a kernel vtable function that cannot be directly called☆80Dec 25, 2021Updated 4 years ago
- A driver that supports communication between a Windows guest and HyperWin☆15Jan 6, 2021Updated 5 years ago
- ☆157May 21, 2024Updated 2 years ago
- External Function Calling Tutorial - Invoker☆17Jan 12, 2021Updated 5 years ago
- Easy Anti PatchGuard☆219Apr 9, 2021Updated 5 years ago
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆117Feb 8, 2022Updated 4 years ago
- Function hooks in Windows NT Kernel☆26Oct 13, 2020Updated 5 years ago
- IDA scripts for hypervisor (Hyper-v) analysis and reverse engineering automation☆28Dec 7, 2021Updated 4 years ago
- Exploit MsIo vulnerable driver☆142Aug 12, 2021Updated 5 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- ☆84Apr 23, 2024Updated 2 years ago
- Illustrates the concept of return address spoofing, and how it is used.☆14May 13, 2020Updated 6 years ago
- ☆22Mar 30, 2021Updated 5 years ago
- ☆142Jan 13, 2021Updated 5 years ago
- Hygieia, a vulnerable driver traces scanner written in C++ as an x64 Windows kernel driver.☆153Feb 12, 2022Updated 4 years ago
- Hiding a system thread against conventional means of detection☆41Oct 7, 2020Updated 5 years ago
- The windows kernel debugger consists of two parts, KMOD which is the kernel driver handling ring3 request and KCLI, the command line inte…☆96Sep 12, 2022Updated 3 years ago