tandasat / kraft_dinner
Tool to dump UEFI runtime drivers implementing runtime services for Windows
☆94Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for kraft_dinner
- A native hypervisor designed for the Windows operating system☆120Updated 3 years ago
- Header only wrapper around Hex-Rays API in C++20.☆151Updated 2 years ago
- Resolve DOS MZ executable symbols at runtime☆93Updated 3 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆205Updated 5 years ago
- A simple x86_64 AMD-v hypervisor type-2 Programmed with C++, with soon to be added syscall hooks. [W.I.P]☆92Updated last year
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆102Updated 4 years ago
- Intercepting DeviceControl via WPP☆127Updated 5 years ago
- Kernel driver for detecting Intel VT-x hypervisors.☆170Updated last year
- HelloAmdHvPkg is a type-1 research hypervisor for AMD processors.☆86Updated 4 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆87Updated last year
- Ghetto user mode emulation of Windows kernel drivers.☆122Updated last month
- Header-only VMWare Backdoor API Implementation & Effortless VMX Patcher for Custom Guest-to-Host RPCs☆98Updated 3 years ago
- VM devirtualization PoC based on AsmJit and llvm☆104Updated 3 years ago
- A portable header only library extending the C++20 STL.☆69Updated 7 months ago
- Documenting system information classes and their uses☆50Updated 3 years ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆52Updated 9 months ago
- Enable SEH support for manual mapped x86-32bit PEs☆65Updated 5 years ago
- A simple hypervisor demonstrating the use of the Intel VT-rp (redirect protection) technology.☆91Updated 7 months ago
- ☆93Updated 7 years ago
- Unicorn Engine port for UEFI firmware☆44Updated 6 months ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆69Updated last year
- alternative smm driver for ryzen motherboards☆108Updated last month
- Browse Page Tables on Windows (Page Table Viewer)☆185Updated 2 years ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆89Updated 4 years ago
- ☆139Updated 3 years ago
- x64 Windows PatchGuard bypass, register process-creation callbacks from unsigned code☆196Updated 3 years ago
- ☆66Updated 3 years ago
- Minimalistic AMD-V/SVM hypervisor with memory introspection capabilities☆181Updated 5 months ago
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆76Updated 2 years ago
- IDA Pro plugin to make bitfield accesses easier to grep☆229Updated 7 months ago