tandasat / SimpleSvmHook
SimpleSvmHook is a research purpose hypervisor for Windows on AMD processors.
☆345Updated 3 years ago
Related projects: ⓘ
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆506Updated 3 weeks ago
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆556Updated 5 years ago
- A minimalistic educational hypervisor for Windows on AMD processors.☆314Updated 9 months ago
- System call hook for Windows 10 20H1☆461Updated 3 years ago
- Detecting execution of kernel memory where is not backed by any image file☆252Updated 6 years ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆822Updated 4 years ago
- Lightweight Intel VT-x Hypervisor.☆377Updated last year
- A VMP to VTIL lifter.☆419Updated 3 years ago
- C++ STL in the Windows Kernel with C++ Exception Support☆384Updated last year
- C++ graphics kernel subsystem hook☆472Updated 3 years ago
- The Grimoire Hypervisor solution for x86 Processors with experimental nested virtualization support.☆434Updated last month
- Windows NT x64 syscall fuzzer☆584Updated last year
- kHypervisor is a lightweight bluepill-like nested VMM for Windows, it provides and emulating a basic function of Intel VT-x☆406Updated 2 years ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆477Updated this week
- Simple Intel VT-x hypervisor☆247Updated 9 months ago
- PatchGuard Research☆290Updated 5 years ago
- UEFI bootkit for driver manual mapping☆511Updated 8 months ago
- C++17 PE manualmapper☆244Updated 2 years ago
- VivienneVMM is a stealthy debugging framework implemented via an Intel VT-x hypervisor.☆774Updated 4 years ago
- Research on Windows Kernel Executive Callback Objects☆277Updated 4 years ago
- KSOCKET provides a very basic example how to make a network connections in the Windows Driver by using WSK☆464Updated 2 years ago
- pseudo-code to show how to disable patchguard with win10☆296Updated 6 years ago
- Memory hacking library powered by AMD SVM☆290Updated last year
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆226Updated 5 months ago
- hook msr by amd svm☆118Updated 4 years ago
- driver mapper / capcom wrapper☆213Updated 4 years ago
- Handle elevation DKOM against ObRegisterCallbacks☆274Updated 6 years ago
- Disable DSE and WinTcb (without breaking DRM)☆410Updated 8 years ago
- Emulate Drivers in RING3 with self context mapping or unicorn☆299Updated 2 years ago
- COFF and Portable Executable format described using standard C++ with no dependencies.☆251Updated 5 months ago