-
KernelHook Public
Forked from smallzhong/KernelHook一个用来做windows内核hook的框架
C MIT License UpdatedApr 28, 2025 -
kernel_monitor Public
Forked from smallzhong/kernel_monitor一个windows内核驱动分析框架,对内核所有导出函数进行挂钩监控
C MIT License UpdatedApr 27, 2025 -
-
-
-
KsDumper-11 Public
Forked from mastercodeon314/KsDumper-11A revival of the classic and legendary KsDumper
C# UpdatedJan 24, 2025 -
wow64ext Public
Forked from sonyps5201314/wow64extAnother wow64ext to try to be compatible with WOW64 for all architectures.
C++ GNU Lesser General Public License v3.0 UpdatedJan 18, 2025 -
NoScreen Public
Forked from KANKOSHEV/NoScreenHiding the window from screenshots using the function win32kfull::GreProtectSpriteContent
C UpdatedDec 26, 2024 -
APT_Step_Bear_Inject Public
Forked from huoji120/APT_Step_Bear_Inject复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》
C++ UpdatedOct 27, 2024 -
InfinityHookPro12138 Public
Forked from zhutingxf/InfinityHookProInfinityHook 支持Win7 到 Win11 最新版本,虚拟机环境及物理机环境
C++ MIT License UpdatedOct 7, 2024 -
RTCore64_Vulnerability Public
Forked from oakboat/RTCore64_VulnerabilityUse RTCore64 to map your driver on windows 11.
C++ MIT License UpdatedApr 6, 2024 -
-
-
-
-
-
-
enum_real_dirbase Public
Forked from MapleSwan/enum_real_dirbase从MmPfnData中枚举进程和页目录基址
C++ UpdatedAug 18, 2023 -
-
anheng-mingyu-wangguan Public
Forked from rockmelodies/anheng-mingyu-wangguan安恒明御安全网关rce
UpdatedAug 14, 2023 -
CVE-2023-35078-Exploit-POC Public
Forked from vchan-in/CVE-2023-35078-Exploit-POCCVE-2023-35078 Remote Unauthenticated API Access Vulnerability Exploit POC
-
WinArk Public
Forked from BeneficialCode/WinArkWindows Anti-Rootkit Tool
C++ MIT License UpdatedApr 26, 2023 -
CVE-2022-37969 Public
Forked from fortra/CVE-2022-37969Windows LPE exploit for CVE-2022-37969
C++ UpdatedApr 3, 2023 -
Win32_Offensive_Cheatsheet Public
Forked from matthieu-hackwitharts/Win32_Offensive_CheatsheetWin32 and Kernel abusing techniques for pentesters
C++ MIT License UpdatedMar 30, 2023 -
Chaos-Rootkit Public
Forked from ZeroMemoryEx/Chaos-Rootkitx64 ring0 Rootkit with Process Hiding and Privilege Escalation Capabilities
C UpdatedMar 26, 2023 -
-
Black-Angel-Rootkit Public
Forked from XaFF-XaFF/Black-Angel-RootkitBlack Angel is a Windows 11/10 x64 kernel mode rootkit. Rootkit can be loaded with enabled DSE while maintaining its full functionality.
C++ GNU General Public License v3.0 UpdatedMar 21, 2023 -
Windows_LPE_AFD_CVE-2023-21768 Public
Forked from xforcered/Windows_LPE_AFD_CVE-2023-21768LPE exploit for CVE-2023-21768
C UpdatedMar 8, 2023 -
VMProtect-3-5-DEvirt Public
Forked from sunwm518/VMProtect-3-5-DEvirtVMProtect, VMP, Devirter, 3,5
C# UpdatedJan 30, 2023 -
video-virtual-memory-materials Public
Forked from dulong-lab/video-virtual-memory-materials《关于编写 x64 Windows 10 驱动以了解虚拟内存这件事》系列视频附带的代码和材料
C UpdatedJan 26, 2023