tandasat / capstone
Capstone disassembly/disassembler framework: Core (Arm, Arm64, M68K, Mips, PPC, Sparc, SystemZ, X86, X86_64, XCore) + bindings (Python, Java, Ocaml)
☆15Updated 5 years ago
Related projects: ⓘ
- ☆25Updated 7 years ago
- by others☆36Updated 6 years ago
- ☆25Updated 6 years ago
- ☆28Updated this week
- An ark tool's driver☆39Updated 7 years ago
- ☆18Updated this week
- x64 Kernel Hooks Detection☆24Updated 7 years ago
- Shareds for kernel developement☆27Updated 10 years ago
- Kernel Inject Process☆11Updated 7 years ago
- Map memory to user space and manipulate user memory, using capmon☆23Updated 5 years ago
- Some garbage drivers written for getting started☆62Updated 4 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆24Updated 10 years ago
- map driver to memory☆25Updated 6 years ago
- ☆31Updated this week
- ☆29Updated this week
- Modify process handle permissions☆59Updated 7 years ago
- ☆33Updated 3 years ago
- Example of hijacking system calls via function pointer tables☆30Updated 3 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆74Updated 2 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆53Updated 6 years ago
- ☆13Updated 5 years ago
- For Example. See Miro's Blog☆29Updated last year
- DllInject (Memory Load)☆10Updated 5 years ago
- Wrapper for VMProtect Library (only MSVC)☆34Updated 6 years ago
- Another method to anti ThreadHideFromDebugger☆34Updated 5 years ago
- ☆44Updated 5 years ago
- ☆28Updated 5 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆27Updated 6 years ago
- ☆10Updated this week
- bypass CRC☆11Updated 6 years ago