A simple ida python script to find .data ptr

Updated 7 months ago

Expanding Kernel Lazy Importer

Updated 10 months ago

SoulExtraction is a windows driver library for extracting cert information in windows drivers

Updated 10 months ago

Does not work on latest vmp3 because of the new but fairly primitive vmenter obfuscation

Updated 12 months ago

tysm xeroxz

Updated 12 months ago

POC about how to prevent windbg break

Updated 1 year ago

A poc that abuses Enclave

Updated 1 year ago

Load your driver like win32k.sys

Updated 1 year ago

POC about how to detect windows kernel debug by pool tag.

Updated 1 year ago

Using ReadDirectoryChangesW to detect CheatEngine

Updated 1 year ago

DIYSystemMemoryDump is a tool that forces a lock on the type of system memory dump.

Updated 1 year ago

UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.

Updated 1 year ago

VMProtect 3 Virtual Machine Handler Emulation

Updated 2 years ago

VMProtect 3 Virtual Machines Profiler Library

Updated 2 years ago

VMProtect 3 Static Devirtualization

Updated 2 years ago

Updated 2 years ago

BEDaisy Strings Dumper

Updated 2 years ago

Eon Computer Programming Language.

Updated 2 years ago

A c++ header only library for inline hooking. Supports x86_64, x86, and arm. Small, simple, and easily detected :)

Updated 2 years ago

reverse engineering of amlegit/xcheats.cc

Updated 2 years ago