Bypasses for Windows kernel callbacks PatchGuard protection
☆44Aug 15, 2021Updated 4 years ago
Alternatives and similar repositories for kernel_callbacks
Users that are interested in kernel_callbacks are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- x64 Windows privilege elevation using anycall☆22May 28, 2021Updated 5 years ago
- x64 Windows PatchGuard bypass, register process-creation callbacks from unsigned code☆209May 27, 2021Updated 5 years ago
- A kernel module dumper for Windows x64 using mhyprot vulnerable driver☆36Oct 26, 2020Updated 5 years ago
- Two PoC of accessing process virtual memory via NT Kernel☆21Jun 25, 2021Updated 5 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆415Jul 6, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆157May 21, 2024Updated 2 years ago
- A driver that supports communication between a Windows guest and HyperWin☆15Jan 6, 2021Updated 5 years ago
- c++ implementation of windows heavens gate☆70Feb 12, 2021Updated 5 years ago
- Panda - is a set of utilities used to research how PsExec encrypts its traffic.☆13Apr 20, 2021Updated 5 years ago
- Some garbage drivers written for getting started☆64Dec 31, 2019Updated 6 years ago
- Analysing and defeating PatchGuard universally☆34Nov 4, 2020Updated 5 years ago
- Windows Server 2K3 NT 5☆12Apr 17, 2021Updated 5 years ago
- As i was busy reversing the githubs^^ i stumbled on old source which allows you to control driver kernal^^ with IOCTL, amazing rite?☆21Jul 15, 2021Updated 5 years ago
- ☆14Mar 8, 2019Updated 7 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- The windows kernel debugger consists of two parts, KMOD which is the kernel driver handling ring3 request and KCLI, the command line inte…☆96Sep 12, 2022Updated 3 years ago
- ☆10Oct 3, 2016Updated 9 years ago
- Hijack NotifyRoutine for a kernelmode thread☆38Jun 4, 2022Updated 4 years ago
- Communication via callback☆73Oct 9, 2019Updated 6 years ago
- x64 Windows implementation of virtual-address to physical-address translation☆54Jun 3, 2021Updated 5 years ago
- POC Hook of nt!HvcallCodeVa☆53May 8, 2023Updated 3 years ago
- win10 pgContext dynamic dump (btc version)☆113Jan 15, 2020Updated 6 years ago
- Global DLL injector☆69May 16, 2021Updated 5 years ago
- The kernel mode Standard Template Library Template☆19Feb 22, 2020Updated 6 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- x64HOOK库☆17Jan 14, 2020Updated 6 years ago
- x64 manual mapper using inline syscalls☆10Jul 8, 2021Updated 5 years ago
- ☆18Oct 14, 2020Updated 5 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆51Mar 11, 2021Updated 5 years ago
- PsSetCreateProcessNotifyRoutine bypass proof-of-concept for manual mapped drivers☆36Jul 19, 2021Updated 5 years ago
- 研究和移除各种内核回调,在anti anti cheat的路上越走越远☆180Aug 26, 2022Updated 3 years ago
- Bypassing EasyAntiCheat.sys self-integrity by abusing call hierarchy☆81Oct 6, 2022Updated 3 years ago
- by others☆40Jan 28, 2018Updated 8 years ago
- Exploit MsIo vulnerable driver☆142Aug 12, 2021Updated 4 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Kernel mode to user mode injector☆11Mar 31, 2020Updated 6 years ago
- Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL☆220Nov 12, 2020Updated 5 years ago
- A project on the Unicorn emulator to emulate the code of Pe files in windows☆27Sep 12, 2024Updated last year
- An x64 page table iterator written in C++ as a kernel mode windows driver.☆122May 25, 2021Updated 5 years ago
- Some usefull info when reverse engineering Kernel Mode Anti-Cheat☆80Feb 20, 2023Updated 3 years ago
- Tutorial & a blog post that demonstrate how to code a Windows driver to inject a custom DLL into all running processes. I coded it from s…☆143Aug 2, 2021Updated 5 years ago
- ☆28Sep 29, 2020Updated 5 years ago