FLARE Kernel Shellcode Loader
☆175May 3, 2019Updated 7 years ago
Alternatives and similar repositories for flare-kscldr
Users that are interested in flare-kscldr are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- An example of how x64 kernel shellcode can dynamically find and use APIs☆104May 14, 2020Updated 6 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆76Oct 28, 2021Updated 4 years ago
- ☆34Jul 28, 2018Updated 8 years ago
- Confirms the capability of Hardware-Accelerated Virtualization Technology.☆10Feb 26, 2026Updated 5 months ago
- Kinject - kernel dll injector, currently available in x86 version, will be updated to x64 soon.☆32Apr 10, 2015Updated 11 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- This project demonstares an illegal read- and write- access to the kernel-mode data for both allocated by 3rd party drivers and EPROCESS …☆13Mar 6, 2018Updated 8 years ago
- Encrypted Shellcode Loader Generator☆22Jan 29, 2019Updated 7 years ago
- exploit termdd.sys(support kb4499175)☆61Jul 15, 2019Updated 7 years ago
- drvtriks kernel driver for Windows 7 SP1 and 8.1 x64, that tricks around in your system.☆33Oct 6, 2017Updated 8 years ago
- Load a Windows Kernel Driver☆93Jun 7, 2017Updated 9 years ago
- Control Flow Guard bypass using LoadLibrary and IsBadCodePtr☆45Jan 19, 2017Updated 9 years ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆265Sep 1, 2022Updated 3 years ago
- ☆409Mar 1, 2017Updated 9 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆265Jul 6, 2017Updated 9 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- ☆12Feb 19, 2017Updated 9 years ago
- Pazuzu: Reflective DLL to run binaries from memory☆214Aug 4, 2020Updated 5 years ago
- A more stealthy variant of "DLL hollowing"☆367Mar 8, 2024Updated 2 years ago
- 基于WinDivert实现的一个包过滤与截断程序☆13Jul 22, 2018Updated 8 years ago
- Small tool to load shellcodes or PEs to analyze them☆84May 16, 2018Updated 8 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆82Jan 24, 2011Updated 15 years ago
- Historical Windows temporal memory-state research artifact for studying time-bound memory observations, validation limits, and defensive …☆907May 15, 2026Updated 2 months ago
- Easily hook WIN32 x64 functions☆18Feb 19, 2025Updated last year
- DC25 5A1F - Demystifying Windows Kernel Exploitation by Abusing GDI Objects☆145Jul 30, 2017Updated 8 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆212Jul 2, 2020Updated 6 years ago
- This is a simple driver with x64 inline assembly☆55Jun 26, 2020Updated 6 years ago
- ☆21May 25, 2017Updated 9 years ago
- crash poc & Leak info PoC☆16Mar 19, 2018Updated 8 years ago
- Simple Demo of using Windows Hypervisor Platform☆29Jul 14, 2025Updated last year
- Public documents related to my talk "Bypass Windows Exploit Guard ASR" at Offensive Con 2019.☆93Feb 24, 2019Updated 7 years ago
- A PoC tool for exploiting leaked process and thread handles☆35Feb 13, 2024Updated 2 years ago
- Elevation of privilege detector based on HyperPlatform☆123Mar 5, 2017Updated 9 years ago
- Kernel shellcode injector☆147Mar 23, 2021Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Adds a user-mode asynchronous procedure call (APC) object to the APC queue of the specified thread and spoof the Parent Process.☆158Jun 10, 2019Updated 7 years ago
- ☆17Feb 6, 2019Updated 7 years ago
- Enumerate the DLLs/Modules using NtQueryVirtualMemory☆32Jun 11, 2015Updated 11 years ago
- Code Integrity Violation Spotter☆17Jun 11, 2024Updated 2 years ago
- ☆52Feb 27, 2017Updated 9 years ago
- cve-2019-0808-poc☆48Mar 25, 2019Updated 7 years ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆118Aug 8, 2018Updated 7 years ago