safedv / RustVEHSyscalls

Rust port of LayeredSyscall, designed to perform indirect syscalls while generating legitimate API call stack frames by abusing Vectored Exception Handling (VEH) to bypass user-land EDR hooks in Windows.
91Updated last week

Related projects

Alternatives and complementary repositories for RustVEHSyscalls