reverse engineering of bedaisy.sys (battleyes kernel driver)

Updated 3 years ago

Load your driver like win32k.sys

Updated 2 years ago

Using ReadDirectoryChangesW to detect CheatEngine

Updated 3 years ago

Hijacking EasyAntiCheat.dll to execute dynamic code inside protected games from usermode.

Updated 3 years ago

A poc that abuses Enclave

Updated 2 years ago

Highly Modular Driver Mapper

Updated 3 years ago

POC about how to prevent windbg break

Updated 2 years ago

hook all win32k syscalls with a single .data pointer swap

Updated 3 years ago

Process-Context Specific Kernel Driver Mapper (PSKDM)

Updated 3 years ago

PSKP - Process-Context Specific Kernel Patches

Updated 3 years ago

Paging Table Manipulation From Usermode

Updated 3 years ago

This method abusing studio luau compiler for achieving perfect luau compilation

Updated 3 years ago

mess up some code

Updated 3 years ago

DIYSystemMemoryDump is a tool that forces a lock on the type of system memory dump.

Updated 3 years ago

UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.

Updated 3 years ago

Vulnerable Driver Manipulation

Updated 3 years ago

swap driver on disk and memory with a Microsoft driver.

Updated 3 years ago

handle elevation using bedaisy. write up can be found here https://back.engineering/21/08/2020/

Updated 3 years ago

BEDaisy Strings Dumper

Updated 3 years ago

Type-2 Intel hypervisor for Windows 10 systems

Updated 3 years ago