mq1n / hSonicLinks
New handle stealing technique for windows apps
☆13Updated 8 years ago
Alternatives and similar repositories for hSonic
Users that are interested in hSonic are comparing it to the libraries listed below
Sorting:
- ice9 - is anticheat based on usermode tricks and undocumented methods , builded as dll for loading trought the shibari framework☆24Updated 10 months ago
- My take on the capcom driver vulnerability☆28Updated 8 years ago
- ☆14Updated 9 years ago
- LoadLibrary, GetModuleHandle and GetProcAddress calls for remote processes☆22Updated 11 years ago
- ☆14Updated 7 years ago
- anti-cheat based on user-mode tricks and undocumented methods☆25Updated 8 years ago
- Spoof Windows Test Signing Mode☆29Updated 7 years ago
- NT reversal☆25Updated 7 years ago
- A driverless driver that is supposed to be manually mapped, usually by using TDL exploit. The driver shows how to read/write to any proce…☆22Updated 8 years ago
- Simple program for static hooking dynamic libraries in executable application☆24Updated 11 years ago
- UI application that can compare PE images in memory or in raw PE file☆19Updated 11 years ago
- Shareds for kernel developement☆28Updated 11 years ago
- Dll injector POC for new handle stealing technique☆20Updated 8 years ago
- win32/x64 obfuscate framework☆33Updated 6 years ago
- Math shit - Variadic vector and polygon math, statistical analysis etc☆13Updated 6 years ago
- Small tool which loads Windows drivers with NtLoadDriver☆47Updated 4 years ago
- MIR-Engine☆24Updated 8 years ago
- Wrapper for VMProtect Library (only MSVC)☆35Updated 7 years ago
- Windows handle stealing POC with NtDuplicateObject☆40Updated 8 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Updated 8 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆26Updated 11 years ago
- Software Distribution Service☆12Updated 10 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆24Updated 8 years ago
- Stealthy Injector that leverages a vulnerable driver and other exploits to remain undetected☆36Updated 7 years ago
- A simple kernel mode driver that hooks some values at the KUSER_SHARED_DATA structure.☆27Updated 5 years ago
- Makes drivers less sucky to manage from usermode.☆11Updated 9 years ago
- Code injection by hijacking threads in Windows 32-bit applications☆43Updated 7 years ago
- Remote memory library in C++17.☆34Updated 7 years ago
- MazzCrypt - You won't ever get caught. A [was-private] polymorphic source code parser to randomize executables. Inspired by PolyLoader by…☆13Updated 9 years ago
- PE(compressed dll) memory loader using nt api☆46Updated 8 years ago