monitors hidden syscalls called from call of duty anticheat
☆90Jan 13, 2025Updated last year
Alternatives and similar repositories for hidden_syscall_monitoring
Users that are interested in hidden_syscall_monitoring are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆39Sep 22, 2024Updated last year
- Folder Or File Delete to Get System Shell on Current Session Desktop☆46Jan 14, 2025Updated last year
- Manually maps a DLL & replaces a target process's entry point.☆22Mar 1, 2025Updated last year
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆80Sep 18, 2022Updated 3 years ago
- Windows Console Monitor☆34Jun 11, 2019Updated 6 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆26Jan 6, 2025Updated last year
- Binary rewriter for 64-bit PE files.☆102Feb 5, 2024Updated 2 years ago
- LPC (Local Procedure Call) is a portion of Windows NT kernel, used for fast communication between threads or processes. It can be also us…☆16Mar 21, 2021Updated 5 years ago
- Bring Your Own Vulnerable Driver for PatchGuard & Driver Signature Enforcement☆16Apr 6, 2024Updated 2 years ago
- kernel-mode DLL Injector☆139Apr 25, 2026Updated last month
- WinDbg-ext-MCP bridges your favorite LLM client (like Cursor, Claude, or VS Code) with WinDbg, enabling real-time, AI assisted kernel deb…☆100Sep 10, 2025Updated 8 months ago
- A basic implementation of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆78Mar 29, 2025Updated last year
- Sleep obfuscation☆276Dec 13, 2024Updated last year
- An x86-64 Code Virtualizer☆317Sep 26, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- The kernel mode Standard Template Library Template☆19Feb 22, 2020Updated 6 years ago
- An anti-cheat project that includes kernel mode.☆39Jul 29, 2021Updated 4 years ago
- Blocking Windows EDR agents by registering an own IPC-object in the Object Manager’s namespace (CVE-2023-3280, CVE-2024-5909, CVE-2024-20…☆37Feb 27, 2025Updated last year
- InfinityHookProMax: Make InfinityHook great great again☆53Aug 25, 2023Updated 2 years ago
- Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths☆359Aug 11, 2024Updated last year
- A fully compatible replacement of Windows NT NtCreateLowBoxToken syscall - precisely restored from reverse engineering☆43Jun 10, 2025Updated 11 months ago
- Proof of Concept for manipulating the Kernel Callback Table in the Process Environment Block (PEB) to perform process injection and hijac…☆275Oct 31, 2024Updated last year
- Compile-Time Calls Obfuscator for C++14+☆51Dec 7, 2023Updated 2 years ago
- bootkit驱动映射,三环进程注入加载指定模块☆14Oct 8, 2024Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Hooking Windows' exception dispatcher to protect process's PML4☆250Jan 24, 2025Updated last year
- Packet deobfuscation for FFXIV☆19May 7, 2026Updated 2 weeks ago
- High-level library for executable binary file analysis☆16Feb 13, 2017Updated 9 years ago
- Proof-of-concept post-build obfuscator for Unity IL2CPP projects☆39Jan 12, 2025Updated last year
- Generating legitimate call stack frame along with indirect syscalls by abusing Vectored Exception Handling (VEH) to bypass User-Land EDR …☆306Jul 31, 2024Updated last year
- HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate oper…☆381Jun 3, 2023Updated 2 years ago
- Check if your AV/EDR does inline hooking, displays the hooked functions and allows you to compare them with the original ones.☆37Apr 2, 2026Updated last month
- ☆31Mar 9, 2024Updated 2 years ago
- Stealing signatures from pe files☆15Apr 1, 2025Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- TypeLib persistence technique☆146Oct 22, 2024Updated last year
- Detect WFP filters blocking EDR communications☆97Jan 5, 2024Updated 2 years ago
- Static user/kernel mode library that allows access to all functions and global variables by extracting offsets from the PDB