xplshn / hidefs
Kernel module that allows hiding files in any filesystem
☆13Updated 4 months ago
Alternatives and similar repositories for hidefs:
Users that are interested in hidefs are comparing it to the libraries listed below
- In-memory hiding technique☆50Updated 4 months ago
- A simple UEFI bootkit made by @NSG650 and me.☆26Updated 4 months ago
- ☆23Updated 5 months ago
- A few examples of how to trap virtual memory access on Windows.☆30Updated 4 months ago
- Mentally ill EtwTi parser☆36Updated last month
- ☆38Updated 2 months ago
- Hooking KPRCB IdlePreselect function to gain execution inside PID 0.☆61Updated 3 weeks ago
- a demo module for the kaine agent to execute and inject assembly modules☆38Updated 8 months ago
- ☆30Updated 3 weeks ago
- bootlicker: A terribly written but functioning UEFI shellcode bootkit patched into a firmware volume or boot device on the EFI partition☆19Updated 2 months ago
- Dll injection through code page id modification in registry. Based on jonas lykk research☆17Updated 2 years ago
- A native Windows library for intercepting kernel-to-user transitions using instrumentation callbacks☆19Updated last year
- Exploit POC for CVE-2024-36877☆46Updated 8 months ago
- Repository of different kernel drivers written while studying Windows NT Driver development☆12Updated last year
- A COFF Loader written in Rust☆98Updated last week
- Native Powers Talk demos☆14Updated last year
- 🗡️ A multi-user malleable C2 framework targeting Windows. Written in C++ and Python☆44Updated last year
- Windows kernel debugger for Linux hosts running Windows under KVM/QEMU☆79Updated 6 months ago
- Leveraging TPM2 TCG Logs (Measured Boot) to Detect UEFI Drivers and Pre-Boot Applications☆16Updated last month
- ForsHops☆42Updated last month
- PoC exploit for HP Hardware Diagnostic's EtdSupp driver☆50Updated last year
- Exploiting the KsecDD Windows driver through Server Silos☆68Updated 5 months ago
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆27Updated 9 months ago
- T-1 is a shellcode loader that leverages ML techniques to detect VM environments☆25Updated 6 months ago
- A universal binary patching dll.☆86Updated 6 months ago
- I/O Cache-As-Ram + AMD x86_64 cache line locking | Mirror of https://codeberg.org/3itch/icekit☆14Updated last month
- Unpacker for donut shellcode☆17Updated 4 years ago
- Attacking the cleanup_module function of a kernel module☆31Updated last month
- Example of building an application verifer DLL☆46Updated 11 months ago
- An improved version of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆62Updated last month