mgeeky / HEVD_Kernel_Exploit
Exploits pack for the Windows Kernel mode driver HackSysExtremeVulnerableDriver written for educational purposes.
☆65Updated 3 years ago
Alternatives and similar repositories for HEVD_Kernel_Exploit:
Users that are interested in HEVD_Kernel_Exploit are comparing it to the libraries listed below
- A simple tool to view important DLL Characteristics and change DEP and ASLR☆44Updated 6 years ago
- ☆45Updated 4 years ago
- Malware Analysis, Anti-Analysis, and Anti-Anti-Analysis☆45Updated 7 years ago
- My conference presentations and publications☆26Updated 2 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 6 years ago
- ☆22Updated 4 years ago
- ☆49Updated 4 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 7 years ago
- ☆50Updated 7 years ago
- Master list of all my vulnerability discoveries. Mostly 3rd party kernel drivers.☆48Updated 4 years ago
- ☆22Updated 4 years ago
- Ebfuscator: Abusing system errors for binary obfuscation☆52Updated 4 years ago
- PoC for Bypassing UM Hooks By Bruteforcing Intel Syscalls☆39Updated 9 years ago
- Experimental Windows .text section Patch Detector☆21Updated 10 years ago
- Rekall Memory Forensic Framework☆31Updated 5 years ago
- ☆14Updated 3 years ago
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆53Updated 5 years ago
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆97Updated 4 years ago
- ☆31Updated 4 years ago
- Old exploits and code for my self-referencing PML4 technique (2014)☆31Updated 9 years ago
- r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems☆26Updated 6 years ago
- Parser for a custom executable format from Hidden Bee malware (first stage)☆39Updated 5 months ago
- Analysis of VBS exploit CVE-2018-8174☆30Updated 6 years ago
- ☆33Updated 3 years ago
- Example for PagedOut!☆24Updated 5 years ago
- Flare-On solutions☆36Updated 5 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆36Updated 6 years ago
- Kernel mode windows NT API logger☆22Updated 5 years ago
- Public repository for HEVD exploits☆20Updated 6 years ago
- A set of small utilities, helpers for PIN tracers☆31Updated last year