Advanced native-mode utility for bypassing DSE and HVCI. Implements smart SeCiCallbacks patching and independent management of Memory Integrity settings. Operating as a subsystem:native app, it ensures early-phase control and environment preparation for security research and driver development.
☆73Apr 28, 2026Updated 5 months ago
Alternatives and similar repositories for BootBypass
Users that are interested in BootBypass are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Windows 11 kernel research framework demonstrating DSE bypass on Windows 11 25H2 through boot-time execution. Loads unsigned drivers by s…☆276Apr 9, 2026Updated 5 months ago
- KVC enables unsigned driver loading via DSE bypass (g_CiOptions patch, skci.dll hijack, SeCiCallbacks redirection) and PP/PPL manipulatio…☆325May 28, 2026Updated 4 months ago
- Usermode NT Explorer - Query kernel addresses, translate virtual to physical addresses, inspect the PFN database, and more.☆94Mar 16, 2026Updated 6 months ago
- POC about how to detect windows kernel debug by pool tag.☆13Nov 29, 2023Updated 2 years ago
- ☆18Jan 11, 2026Updated 8 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- "Bypassing" HVCI via donor PFN swaps to modify read-only code pages. Call chained kernel functions (kCET and SLAT support), and more.☆138Mar 16, 2026Updated 6 months ago
- Use PKfail to install UEFI Bootkits☆24Aug 16, 2026Updated last month
- Create stealthy, inline, EPT-like hooks using SMAP and SMEP☆69Oct 19, 2024Updated last year
- tests to catch some sloppy hv impls☆36Mar 16, 2026Updated 6 months ago
- ollvm (obfuscator llvm) plugin ported to llvm 22. add bogus control flow, flattening, splitting, substitution to obfuscate your C/C++ cod…☆18May 17, 2026Updated 4 months ago
- Advanced AV/EDR Killer: Specialized Antivirus & Windows Defender killer for security professionals. Utilizes kernel-level IOCTLs for proc…☆30Apr 20, 2026Updated 5 months ago
- Research-focused hypervisor offering advanced tools for debugging, virtual machine introspection, and automation.☆46Jun 3, 2026Updated 4 months ago
- Hyperspace is a multi-purpose tool for Emulating, Injecting, Dumping and Externals.☆92Jun 10, 2026Updated 3 months ago
- A work-in-progress C++20/23 header-only maths library for game development, embedded, kernel and general-purpose that works in constant c…☆25Dec 6, 2022Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A method to Disable DSE using .data ptr hooks☆38Feb 1, 2024Updated 2 years ago
- This is an EfiGuard BootLoader that can boot EfiGuard from Usermode with no USB or Setup as a Single Executable with automatic File Dumpi…☆81Apr 23, 2026Updated 5 months ago
- Hijacking Hyper-V at Runtime with DDMA☆158Aug 13, 2025Updated last year
- The world's smallest TrustedInstaller launcher ~30KB of pure x64/x86/arm64 assembly. Hybrid CLI/GUI in one binary. Full NT privilege elev…☆59Aug 3, 2026Updated 2 months ago
- Themida 3.x research☆112Feb 28, 2025Updated last year
- Kernel Level NMI Callback Blocker☆198Apr 23, 2026Updated 5 months ago
- Win32 PE Anti-RE and Anti-debugging Framework☆13May 14, 2019Updated 7 years ago
- x64 PE bin2bin obfuscator which doesn't add a section to the binary☆345Aug 18, 2026Updated last month
- Stealth-focused Intel VT-x hypervisor (EAC/BE/ACs/AVs).☆426Mar 20, 2026Updated 6 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- WinDbg-like kernel debugger for Windows, from Linux and macOS☆202Updated this week
- out-of-tree LLVM 21+ pass plugin for policy-driven IR obfuscation.☆110Updated this week
- A basic implementation of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆78Sep 26, 2026Updated last week
- Windows 11 24H2-25H2 Runtime PatchGuard Bypass☆270Nov 4, 2025Updated 10 months ago
- ☆16May 2, 2024Updated 2 years ago
- Windows watermark remover using IAT hooking and COM CLSID proxy injection. Patches shell32.dll via TrustedInstaller to intercept ExtTextO…☆66May 26, 2026Updated 4 months ago
- ☆37Nov 8, 2024Updated last year
- binary instrumentation, analysis, and patching framework☆104Feb 20, 2026Updated 7 months ago
- [WIP] claude opus x86_64 disassembler/lifter/recompiler☆42Feb 12, 2026Updated 7 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Morok is a modular C++23 LLVM New-PM IR obfuscator. It loads as a pass plugin inside clang or opt, rewrites LLVM IR, and emits a behavior…☆99Updated this week
- ☆20Mar 20, 2026Updated 6 months ago
- create a um process that contains all physical memory☆21Jun 12, 2026Updated 3 months ago
- Windows kernel driver that detects hypervisors by probing SIDT/LIDT edge cases, paging/TLB behaviors, privilege transitions, and timing e…☆50Mar 3, 2026Updated 7 months ago
- PoC for AMD Ryzen driver.☆20Jan 12, 2026Updated 8 months ago
- ☆47Jul 3, 2026Updated 3 months ago
- An analysis and static deobfuscation of codedefender.io protected samples.☆99Apr 18, 2026Updated 5 months ago