SSDE is a collection of utilities that help in having Windows load your custom signed kernel drivers when Secure Boot is on and you own the system's platform key, instead of using test mode.
☆278Aug 27, 2021Updated 5 years ago
Alternatives and similar repositories for ssde
Users that are interested in ssde are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Load self-signed drivers without TestSigning or disable DSE. Transferred from https://github.com/DoubleLabyrinth/Windows10-CustomKernelSi…☆804Jan 22, 2020Updated 6 years ago
- This is the P.O.C source for hooking the system calls on Windows 10 (1903) using it's dynamic trace feature weakness☆58Sep 12, 2019Updated 6 years ago
- nmi stackwalking + module verification☆173Dec 28, 2023Updated 2 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆269Aug 31, 2022Updated 3 years ago
- x64 PE-COFF virtualization driven obfuscation engine☆59Oct 14, 2022Updated 3 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- create a um process that contains all physical memory☆20Jun 12, 2026Updated 2 months ago
- An x64 page table iterator written in C++ as a kernel mode windows driver.☆123May 25, 2021Updated 5 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆420Jul 6, 2022Updated 4 years ago
- A Windows Kernel Driver Emulator base on Unicorn, Kernel Memory Dump and some of native environment☆193Updated this week
- ☆26Sep 29, 2022Updated 3 years ago
- A wrapper class to hide the original calling address of a function☆54Aug 9, 2020Updated 6 years ago
- Exploit MsIo vulnerable driver☆144Aug 12, 2021Updated 5 years ago
- ☆26Jul 15, 2023Updated 3 years ago
- Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executabl…☆418Jan 29, 2022Updated 4 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- KDP compatible unsigned driver loader leveraging a write primitive in one of the IOCTLs of gdrv.sys☆170Jun 14, 2024Updated 2 years ago
- Walks through the 4-level paging structures in Windows x64☆14Feb 12, 2023Updated 3 years ago
- Windows kernel driver that detects hypervisors by probing SIDT/LIDT edge cases, paging/TLB behaviors, privilege transitions, and timing e…☆49Mar 3, 2026Updated 5 months ago
- Simple DLL and client app that work together to hook all the functions in WinHvPlatform.dll in order to provide logging and introspection…☆21Dec 1, 2021Updated 4 years ago
- Disable PatchGuard and Driver Signature Enforcement at boot time☆2,522Jun 16, 2026Updated 2 months ago
- Easy Anti PatchGuard☆220Apr 9, 2021Updated 5 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆29Mar 5, 2021Updated 5 years ago
- A debugger library using VEH.☆79Sep 3, 2024Updated last year
- DSE bypass using a leaked cert and adjusting the current clock.☆164Oct 3, 2025Updated 10 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- windows rootkit☆60May 2, 2024Updated 2 years ago
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆51Jan 15, 2021Updated 5 years ago
- HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate oper…☆383Jun 3, 2023Updated 3 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆104May 10, 2022Updated 4 years ago
- usermode driver mapper that forcefully loads any signed kernel driver (legit cert) with a big enough section (example: .data, .rdata) to …☆507Jan 3, 2022Updated 4 years ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆914Nov 21, 2019Updated 6 years ago
- Kernel-Mode extended version of https://github.com/microsoft/Detours☆182Jun 1, 2025Updated last year
- Kernel Driver Utility☆2,707Aug 18, 2026Updated last week
- An example of Windows NT Native API application and kernel driver☆22Feb 10, 2020Updated 6 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Hook syscalls from ring0 without triggering PatchGuard☆26Oct 29, 2025Updated 10 months ago
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆58May 23, 2022Updated 4 years ago
- Static user/kernel mode library that allows access to all functions and global variables by extracting offsets from the PDB☆134May 29, 2025Updated last year
- A library to develop kernel level Windows payloads for post HVCI era☆527May 18, 2021Updated 5 years ago
- 这篇文章的目的是介绍一款实验性项目基于COM命名管道或者Windows Hyper-V虚拟机Vmbus通道实现的运行在uefi上的windbg调试引擎开发心得☆42Jun 16, 2024Updated 2 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆244Nov 6, 2019Updated 6 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Nov 22, 2021Updated 4 years ago