stuxnet147 / Win-Kernel-CR3ProtectLinks
A minimal CR3 protection PoC (KdpTrap hook)
☆15Updated last year
Alternatives and similar repositories for Win-Kernel-CR3Protect
Users that are interested in Win-Kernel-CR3Protect are comparing it to the libraries listed below
Sorting:
- ☆73Updated 3 years ago
- detect hypervisor with Nmi Callback☆42Updated 3 years ago
- ☆19Updated last year
- ☆23Updated 4 years ago
- Windows x64 DLL/Driver manual map injection on a non-present PML4E using physical memory read/writes, direct page table manipulation and …☆81Updated 4 months ago
- ☆18Updated 2 weeks ago
- Old way for blocking NMI interrupts☆29Updated 3 years ago
- 将驱动映射到会话空间☆38Updated 3 years ago
- ☆36Updated 3 years ago
- ☆35Updated 2 years ago
- ☆26Updated last month
- ☆48Updated 3 years ago
- UM-KM Communication using registry callbacks☆39Updated 5 years ago
- ☆14Updated 2 years ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆75Updated 2 years ago
- A simple ida python script to find .data ptr☆56Updated 2 years ago
- clearing traces of a loaded driver☆47Updated 3 years ago
- Discarded Section Manual Map☆68Updated 5 years ago
- POC usermode <=> kernel communication via ALPC.☆70Updated last year
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆53Updated 3 years ago
- Secure Hyper-Visor Injector for Easy Anti Cheat, Battleye | that supports amd + intel | Undetected + Active updates☆26Updated 3 years ago
- Register a callback in Kernel from a manually mapped driver☆43Updated 4 years ago
- ☆63Updated 3 years ago
- Hiding the window from screenshots using the function win32kfull::ChangeWindowTreeProtection☆11Updated 4 years ago
- ☆27Updated 2 years ago
- Hiding a system thread against conventional means of detection☆41Updated 5 years ago
- A intel hypervisor, implementing many virtualization techniques☆52Updated 2 years ago
- ☆18Updated last year
- A method to Disable DSE using .data ptr hooks☆38Updated last year
- A library to assist with memory & code protection.☆65Updated last year