noahbelsito / inteloops
Exploits Intel's signed iqvw64e.sys driver to allow manual mapping and read/writing of memory at a kernel level.
☆13Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for inteloops
- kernel to user mode APC injector☆43Updated 2 years ago
- Compileable POC of namazso's x64 return address spoofer.☆47Updated 4 years ago
- Compile-Time Calls Obfuscator for C++14+☆34Updated 11 months ago
- NO WriteProcessMemory CreateRemoteThread APIs call shellcode injection☆28Updated 4 years ago
- Hiding a system thread against conventional means of detection☆35Updated 4 years ago
- Only for Stress-Testing☆22Updated 2 years ago
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆46Updated last year
- bootkit驱动映射,三环进程注入加载指定模块☆11Updated last month
- Patches DSE by swapping both data ptrs located in SeValidateImageHeader && SeValidateImageData☆20Updated 9 months ago
- POC Hook of nt!HvcallCodeVa☆50Updated last year
- research revolving the windows filtering platform callout mechanism☆22Updated 5 months ago
- A method to Disable DSE using .data ptr hooks☆26Updated 9 months ago
- DSE & PG bypass via BYOVD attack☆37Updated 7 months ago
- Hijack NotifyRoutine for a kernelmode thread☆41Updated 2 years ago
- NtCreateUserProcess with CsrClientCallServer for mainstream Windows x64 version☆22Updated 4 months ago
- ☆25Updated 3 years ago
- CVE-2022-3699 with arbitrary kernel code execution capability☆70Updated last year
- silence file system monitoring components by hooking their minifilters☆51Updated 9 months ago
- browse microsoft driver server for potentially vulnerable drivers☆13Updated 6 months ago
- direct systemcalls with a modern c++20 interface.☆42Updated last year
- PAGE_GUARD based hooking library☆40Updated 2 years ago
- Using c++23 compile-time magic to produce obfuscated PIC strings and arrays.☆15Updated 5 months ago
- ☆32Updated last year
- partially disable patchguard up to win11 21H2☆16Updated 5 months ago
- UM-KM Communication using registry callbacks☆39Updated 4 years ago
- ☆22Updated last year
- A poc that abuses Enclave☆36Updated 2 years ago
- Windows kernel drivers simple HTTP library for modern C++☆41Updated 6 years ago
- ☆25Updated 5 years ago