vmcall / owned_alignmentLinks
Hooking kernel functions by abusing alignment
☆247Updated 4 years ago
Alternatives and similar repositories for owned_alignment
Users that are interested in owned_alignment are comparing it to the libraries listed below
Sorting:
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆337Updated 5 years ago
- a more stable & secure read/write virtual memory for kernel mode drivers☆161Updated 5 years ago
- Proof of concept on how to bypass some limitations of a manual mapped driver☆171Updated 5 years ago
- ☆171Updated 8 years ago
- driver mapper / capcom wrapper☆225Updated 6 years ago
- Intercepting DeviceControl via WPP☆135Updated 6 years ago
- ☆146Updated 4 years ago
- Module extending manual mapper☆370Updated 5 years ago
- Windows kernel samples☆257Updated 6 years ago
- A library to manipulate physical memory from usermode.☆298Updated 2 years ago
- BattlEye compatible injector, done completely from user-mode, project by secret.club☆250Updated 5 years ago
- An Injector that can inject dll into game process protected by anti cheat using SetWindowsHookEx.☆242Updated 6 years ago
- BattlEye shellcodes tester☆151Updated 3 years ago
- 09/2021 reversal of EasyAntiCheat driver☆230Updated 4 years ago
- C++17 PE manualmapper☆409Updated 4 years ago
- ☆185Updated 6 years ago
- manually map driver for a signed driver memory space☆164Updated 4 years ago
- Kernel mode bypass for BattlEye, EAC☆188Updated 2 years ago
- This is a source to a bypass i made for some games, for now this should work f or VAC, BE and EAC. The only downside is that you will nee…☆180Updated 5 years ago
- Emulate Drivers in RING3 with self context mapping or unicorn☆361Updated 3 years ago
- A library to read physical memory and system-wide virtual memory.☆127Updated 7 years ago
- This DKOM exploit enables any app in usermode to access physical memory directly☆227Updated 8 years ago
- Rendering on external windows via hijacking thread contexts☆402Updated 5 years ago
- ☆155Updated 6 years ago
- Handle elevation DKOM against ObRegisterCallbacks☆323Updated 7 years ago
- Invoke functions with a spoofed return address. For 32-bit Windows binaries. Supports __fastcall, __thiscall, __stdcall and __cdecl calli…☆175Updated 2 years ago
- Vectored Exception Handling Hooking Class☆166Updated 6 years ago
- BattlEye BEClient<->BEService usermode emulator☆82Updated 6 years ago
- Stealthy UM <-> KM communication system without creating any system threads, permanent hooks, driver objects, section objects or device o…☆372Updated last year
- A customizable process dumper.☆144Updated 6 years ago