systematic exploitation of physical read/write to map unsigned code into the kernel.

Updated 3 years ago

reverse engineering of amlegit/xcheats.cc

Updated 3 years ago

A c++ header only library for inline hooking. Supports x86_64, x86, and arm. Small, simple, and easily detected :)

Updated 3 years ago

Eon Computer Programming Language.

Updated 3 years ago

BEDaisy Strings Dumper

Updated 3 years ago

Jit linker, mapper, obfuscator, and mutator

Updated 9 months ago

Updated 3 years ago

VMProtect 3 Static Devirtualization

Updated 3 years ago

VMProtect 3 Virtual Machines Profiler Library

Updated 3 years ago

VMProtect 3 Virtual Machine Handler Emulation

Updated 3 years ago

UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.

Updated 3 years ago

DIYSystemMemoryDump is a tool that forces a lock on the type of system memory dump.

Updated 3 years ago

Using ReadDirectoryChangesW to detect CheatEngine

Updated 3 years ago

POC about how to detect windows kernel debug by pool tag.

Updated 3 years ago

Load your driver like win32k.sys

Updated 3 years ago

A poc that abuses Enclave

Updated 3 years ago

POC about how to prevent windbg break

Updated 3 years ago

tysm xeroxz

Updated 2 years ago

Does not work on latest vmp3 because of the new but fairly primitive vmenter obfuscation

Updated 2 years ago

SoulExtraction is a windows driver library for extracting cert information in windows drivers

Updated 2 years ago