thejanit0r / x86_vbrkitLinks
Small and lightweight x86-64 VBR bootkit for research purposes
☆9Updated 2 years ago
Alternatives and similar repositories for x86_vbrkit
Users that are interested in x86_vbrkit are comparing it to the libraries listed below
Sorting:
- clone of armadillo patched for windows☆47Updated 8 months ago
- AMD SVM hypervisor rootkit proof of concept☆48Updated last year
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆35Updated 9 months ago
- Application Verifier Dynamic Fault Injection☆39Updated 3 months ago
- ☆11Updated 4 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆36Updated 3 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆46Updated 5 years ago
- A research project about Windows notify routines.☆37Updated 4 years ago
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆33Updated last year
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆40Updated 3 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆72Updated last year
- ☆29Updated 4 years ago
- ☆15Updated 2 years ago
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 3 years ago
- This is a simple driver with x64 inline assembly☆57Updated 5 years ago
- A dynamically loadable virtual-machine based rootkit designed for Linux Kernel v5.13.0 using AMD-V (SVM).☆29Updated 3 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated last year
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated last year
- Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)☆62Updated last year
- Bootkits☆18Updated last year
- WinHvShellcodeEmulator (WHSE) is a shellcode emulator leveraging the Windows Hypervisor Platform API☆23Updated 3 years ago
- Code Integrity Violation Spotter☆16Updated last year
- Exports monitoring plugin for x64dbg☆22Updated 2 years ago
- Python bindings for BochsCPU☆36Updated last month
- A driver to implement IOCTL hooking☆24Updated 3 years ago
- The sample DXE runtime driver demonstrating how to program DMA remapping.☆60Updated last year
- VEH Redirect & VEH Debugger☆23Updated 5 years ago
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆19Updated last week
- ☆29Updated 3 years ago