micREsoft / SysCallerLinks
Windows Syscall SDK with dynamic offset resolution, syscall validation, obfuscation, and more!
☆20Updated this week
Alternatives and similar repositories for SysCaller
Users that are interested in SysCaller are comparing it to the libraries listed below
Sorting:
- WinApi Patcher is a straightforward tool leveraging windows API hooking to patch and modify certain behaviors in a targeted environment.☆42Updated 9 months ago
- ☆45Updated 4 months ago
- codecave hook reverse engineering toolkit.☆37Updated last year
- Tool to dump EFI runtime drivers.☆36Updated last year
- A unique introduction to native runtime obfuscation.☆19Updated 3 months ago
- ☆25Updated 8 months ago
- Fully working kernel-mode VAC bypass☆75Updated 4 months ago
- C++ Class with various techniques to detect the execution in a virtualized environment☆13Updated last year
- Simple, fast and lightweight Header-Only C++ Assembler Library☆62Updated 2 weeks ago
- A windows kernel mode driver that spoofs serial numbers when mapped and executes a malicious payload (FULLY from kernel!!!)☆32Updated 8 months ago
- Using c++23 compile-time magic to produce obfuscated PIC strings and arrays.☆22Updated last year
- kernel-mode DLL Injector☆85Updated 2 months ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆122Updated 2 years ago
- Stealer in c++.☆42Updated 2 months ago
- Experiment with PAGE_GUARD protection to hide memory from other processes☆46Updated last year
- DSE & PG bypass via BYOVD attack☆51Updated last year
- C/C++ antidebugging library for Windows☆22Updated 5 months ago
- A C++17 framework designed to enable obfuscation of constants, variables, and strings.☆25Updated last year
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆26Updated 5 years ago
- A Windows executable (PE) packer (x64) with LZMA compression and with full TLS (Thread Local Storage) support☆57Updated last week
- Hooking Windows' exception dispatcher to protect process's PML4☆178Updated 5 months ago
- ☆57Updated last year
- C++ macro for x64 programs that breaks ida hex-rays decompiler tool.☆118Updated last year
- Kernel<->Usermode shared memory communcation using manually mapped driver☆22Updated 3 years ago
- Makes IDA (most versions) to crash upon opening it.☆92Updated 9 months ago
- A manual PE mapping implementation, aka reflective loader☆19Updated 2 years ago
- Windows 10/11 unsigned kernel driver load/debugging☆12Updated 2 years ago
- monitors hidden syscalls called from call of duty anticheat☆80Updated 5 months ago
- ntoskrnl .data hooks for UM-KM communication☆40Updated last year
- Another UEFI runtime bootkit☆29Updated 2 years ago