zer0condition / Reversing-a-signed-driverLinks
Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6
☆104Updated 2 years ago
Alternatives and similar repositories for Reversing-a-signed-driver
Users that are interested in Reversing-a-signed-driver are comparing it to the libraries listed below
Sorting:
- just proof of concept. hooking MmCopyMemory PG safe.☆78Updated 2 years ago
- ☆62Updated 3 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆97Updated 2 years ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆70Updated 2 years ago
- A library to assist with memory & code protection.☆64Updated last year
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆118Updated 3 years ago
- Made by scammer so i leak for free ! have fun☆55Updated 2 years ago
- Bypassing EasyAntiCheat.sys self-integrity by abusing call hierarchy☆82Updated 3 years ago
- Example driver on how to use SKLib☆62Updated 11 months ago
- ☆84Updated last year
- Injecting dll to protected games using ioclt and code cave communications, works on eac, be protected games but made for fn☆100Updated last year
- A Hyper-V Hacking Framework For Windows 10 x64 (AMD & Intel)☆99Updated 2 years ago
- ☆85Updated 2 years ago
- ☆42Updated 3 years ago
- driver manual mapper powered by https://github.com/estimated1337/lenovo_exec☆111Updated 2 years ago
- ☆64Updated 3 years ago
- A simple MmCopyMemory hook.☆37Updated 3 years ago
- I've developed a rather effective driver for DLL injection targeting EAC Protected Games, and since i dont care for any notable games uti…☆95Updated last year
- ☆81Updated 3 years ago
- Old project (2020) reformed. Modifies gRT->GetVariable sub function from EFI_APPLICATION. Tested on Win10 22H2 (AMD).☆53Updated last year
- A simple ida python script to find .data ptr☆54Updated 2 years ago
- ☆68Updated 4 years ago
- Kernel Level NMI Callback Blocker☆130Updated last month
- Archive R/W into any protected process by changing the value of KTHREAD->PreviousMode☆163Updated 3 years ago
- 将驱动映射到会话空间☆36Updated 3 years ago
- The sequel to Voyager☆81Updated last year
- My EAC & BE Rady CR3 Reading & Writing source that I use for my KM Drivers.☆82Updated last month
- page table manipulation to gain physical r/w☆42Updated last year
- Kernel driver that uses Shared memory to communicate with UserMode☆90Updated 6 years ago
- This is an EfiGuard BootLoader that can boot EfiGuard from Usermode with no USB or Setup as a Single Executable with automatic File Dumpi…☆62Updated last month