POC usermode <=> kernel communication via ALPC.
☆74Jun 6, 2024Updated last year
Alternatives and similar repositories for alpc-km-um
Users that are interested in alpc-km-um are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A simple UM + KM example of how to bypass EAC CR3☆196Oct 13, 2025Updated 7 months ago
- ☆34Apr 11, 2023Updated 3 years ago
- Windows Kernel Misc☆25Sep 3, 2023Updated 2 years ago
- r/w virtual memory without attach☆227Oct 19, 2023Updated 2 years ago
- How to use PiDqSerializationWrite. Introduces how to safely read and write from mapped driver☆26May 29, 2023Updated 2 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆104Jun 26, 2023Updated 2 years ago
- 从MmPfnData中枚举进程和页目录基址☆213Aug 18, 2023Updated 2 years ago
- 对Windbg以Exdi模式下调试windows做一些修复☆20Aug 25, 2023Updated 2 years ago
- Patches DSE by swapping both data ptrs located in SeValidateImageHeader && SeValidateImageData☆24Feb 9, 2024Updated 2 years ago
- Proof of Concept Kernel-User Communication using System Thread.☆14Sep 24, 2023Updated 2 years ago
- Unknowncheats Magically Optimized Tidy Mapper using nvaudio☆155Jun 11, 2024Updated last year
- ☆63Jul 31, 2022Updated 3 years ago
- WinDbg-Samples ExdiGdbSrv fork 修复了一部分Vmware调试的问题☆33Jul 10, 2023Updated 2 years ago
- ☆187May 20, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- anti cheat drv open source☆19Apr 18, 2024Updated 2 years ago
- base for testing☆191Sep 28, 2024Updated last year
- ☆159May 21, 2024Updated 2 years ago
- Execute anything in a legit memory region by attacking a windows driver☆20Aug 20, 2023Updated 2 years ago
- IO隐藏通信封装☆17May 31, 2021Updated 4 years ago
- page table manipulation to gain physical r/w☆44May 7, 2024Updated 2 years ago
- Discarded Section Manual Map☆68Jun 18, 2020Updated 5 years ago
- ☆146Jan 24, 2024Updated 2 years ago
- Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executabl…☆402Jan 29, 2022Updated 4 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆143Dec 10, 2022Updated 3 years ago
- ☆228Mar 11, 2023Updated 3 years ago
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆159Mar 16, 2026Updated 2 months ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆75Aug 16, 2023Updated 2 years ago
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆97May 18, 2026Updated last week
- Stealthy UM <-> KM communication system without creating any system threads, permanent hooks, driver objects, section objects or device o…☆387Apr 30, 2026Updated 3 weeks ago
- ☆33Mar 3, 2024Updated 2 years ago
- POC Hook of nt!HvcallCodeVa☆55May 8, 2023Updated 3 years ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆70Mar 16, 2026Updated 2 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Experiment to use sections as User/Kernelmode comm vector☆22Apr 7, 2023Updated 3 years ago
- Windows kernel driver demonstrating kernel-to-usermode communication via shared memory sections☆106Apr 24, 2026Updated last month
- windows kernel pagehook☆42Oct 30, 2022Updated 3 years ago
- 一个界面基于IMGUI的ARK,目前R3实现☆13Nov 1, 2023Updated 2 years ago
- ☆100Oct 6, 2017Updated 8 years ago
- UM-KM Communication using registry callbacks☆39Jun 8, 2020Updated 5 years ago
- Rendering on external windows via hijacking thread contexts, with notes on ValidateHwnd☆14Jul 9, 2020Updated 5 years ago