void-stack / Hypervisor-Detection
Detects virtual machines and malware analysis environments
☆117Updated 2 years ago
Alternatives and similar repositories for Hypervisor-Detection:
Users that are interested in Hypervisor-Detection are comparing it to the libraries listed below
- ☆122Updated last year
- manual map unsigned driver over signed memory☆185Updated 10 months ago
- DSE & PG bypass via BYOVD attack☆42Updated 10 months ago
- Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver☆163Updated last year
- SMM driver/rootkit for platform memory access with R3 <-> R0 <-> R-2 communication.☆81Updated 4 months ago
- A devirtualization engine for Themida.☆95Updated 11 months ago
- Experiment with PAGE_GUARD protection to hide memory from other processes☆45Updated 7 months ago
- A simple tool to assemble shellcode ready to be copy-pasted into code☆67Updated 2 years ago
- ☆197Updated last year
- CVE-2022-3699 with arbitrary kernel code execution capability☆68Updated 2 years ago
- ☆151Updated 8 months ago
- Use RTCore64 to map your driver on windows 11.☆96Updated 10 months ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆70Updated last year
- State of the art DLL injector that took 20 minutes to make☆209Updated last year
- Unknowncheats Magically Optimized Tidy Mapper using nvaudio☆116Updated 8 months ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆113Updated last year
- ☆73Updated 9 months ago
- driver manual mapper powered by https://github.com/estimated1337/lenovo_exec☆109Updated 2 years ago
- Inline syscalls made for MSVC supporting x64 and WOW64☆177Updated last year
- x64 Windows kernel driver mapper, inject unsigned driver using anycall☆136Updated last year
- Forked LLVM focused on MSVC Compatibility. This version is designed for windows users☆87Updated 2 weeks ago
- nmi stackwalking + module verification☆104Updated last year
- TS-Changer - Forces the machine in/out of TestSigning Mode at runtime.☆65Updated last year
- ☆136Updated this week
- load unsigned kernel-driver by patching dse in 248 lines☆113Updated 10 months ago
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆154Updated last year
- A Kernel Driver that can be used for a cheat or malware base to circumvent common cache & structure table checks. PsLoadedModuleList howe…☆94Updated 5 months ago
- ☆41Updated 3 years ago
- A Hyper-V Hacking Framework For Windows 10 x64 (AMD & Intel)☆49Updated last year