Expanding Kernel Lazy Importer

Updated 2 years ago

Does not work on latest vmp3 because of the new but fairly primitive vmenter obfuscation

Updated 2 years ago

tysm xeroxz

Updated 2 years ago

POC about how to prevent windbg break

Updated 2 years ago

A poc that abuses Enclave

Updated 2 years ago

Load your driver like win32k.sys

Updated 2 years ago

Using ReadDirectoryChangesW to detect CheatEngine

Updated 3 years ago

DIYSystemMemoryDump is a tool that forces a lock on the type of system memory dump.

Updated 3 years ago

UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.

Updated 3 years ago

VMProtect 3 Virtual Machine Handler Emulation

Updated 3 years ago

VMProtect 3 Virtual Machines Profiler Library

Updated 3 years ago

Updated 3 years ago

BEDaisy Strings Dumper

Updated 3 years ago

A c++ header only library for inline hooking. Supports x86_64, x86, and arm. Small, simple, and easily detected :)

Updated 3 years ago

systematic exploitation of physical read/write to map unsigned code into the kernel.

Updated 3 years ago

driver dumper for manually mapped drivers mapped with kdmapper.

Updated 3 years ago

header only library for manually mapping dll's.

Updated 3 years ago

unfairgames reverse engineered.

Updated 3 years ago

header only library for NtLoadDriver/NtUnloadDriver.

Updated 3 years ago

reverse engineering of bedaisy.sys (battleyes kernel driver)

Updated 3 years ago