thesecretclub / riscy-business
RISC-V Virtual Machine
☆204Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for riscy-business
- Collection of hypervisor detections☆189Updated last month
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆178Updated 3 weeks ago
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆163Updated 10 months ago
- Debugger Anti-Detection Benchmark☆291Updated 11 months ago
- compile-time control flow obfuscation using mba☆175Updated last year
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆115Updated 2 months ago
- Native code virtualizer for x64 binaries☆403Updated this week
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆221Updated 2 years ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆267Updated last year
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆148Updated 10 months ago
- LLVM plugin to transparently apply stack spoofing and indirect syscalls to Windows x64 native calls at compile time.☆260Updated 10 months ago
- Admin to Kernel code execution using the KSecDD driver☆236Updated 7 months ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆237Updated 2 years ago
- Process Injection using Thread Name☆241Updated 2 months ago
- HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate oper…☆360Updated last year
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆261Updated last month
- Rusty Hypervisor - Windows UEFI Blue Pill Type-1 Hypervisor in Rust (Codename: Illusion)☆239Updated 2 months ago
- Kernel-mode Paravirtualization in Ring 2, LLVM based linker, and some other things!☆260Updated 3 weeks ago
- PoC Anti-Rootkit/Anti-Cheat Driver.☆160Updated 2 months ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆123Updated 2 years ago
- BYOVD: Loading dbk64.sys and grabbing a handle to it☆149Updated 2 years ago
- Call stack spoofing for Rust☆299Updated 2 months ago
- Abusing exceptions for code execution.☆107Updated last year
- The Windbg extension that implements commands helpful to study Hyper-V on Intel processors.☆130Updated last month
- A bare minimum hypervisor on AMD and Intel processors for learners.☆192Updated this week
- Single header version of System Informer's phnt library.☆186Updated this week
- Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.☆221Updated last year
- Perfect DLL Proxying using forwards with absolute paths.☆254Updated last month
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆154Updated last year
- x86-64 code/pe virtualizer☆160Updated 3 months ago