mhydeath
Abusing mhyprotect (not mhyprot2) to kill AVs / EDRs / XDRs / Protected Processes.
Resources
https://github.com/ZeroMemoryEx/Terminator
https://github.com/kkent030315/evil-mhyprot-cli
There are no reviews yet. Be the first to send feedback to the community and the maintainers!
Abusing mhyprotect (not mhyprot2) to kill AVs / EDRs / XDRs / Protected Processes.
https://github.com/ZeroMemoryEx/Terminator
https://github.com/kkent030315/evil-mhyprot-cli
ReverseKit
x64 Dynamic Reverse Engineering ToolkitNVDrv
Abusing nvidia driver (nvoclock.sys) for physical/virtual memory and control register manipulation.GDRVLoader
Unsigned driver loader using CVE-2018-19320ZeroHVCI
Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling without admin permissions or kernel drivers.ZeroThreadKernel
Recursive and arbitrary code execution at kernel-level without a system thread creationDemystifying-PatchGuard
Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unauthorized modifications to the Windows kernel. The analysis is done through practical engineering, with a focus on understanding PatchGuard's inner workings.Reversing-a-signed-driver
Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6Guarded-Regions-Bypass-Valorant
External Base for ValorantGDRVLib
Virtual and physical memory hacking library using gigabyte vulnerable driverGloomy.cc-Fortnite
Open-Source External Fortnite CheatRWCommunication
IDTHook-x86
Detour hooking IRQ1 ISR through IDT (Interrupt Descriptor Table)Valorant-External
CritBSOD
Abusing RtlAdjustPrivilege and NtSetInformationProcess to cause a BSOD from usermodeOffsetStreaming
Simple program to stream offsets for your game cheat, Was reversing some p2c and decided to recreate a better version of this function for funmemoryPy
DriverPEScan
Parse all driver PEs in current directory to scan for certain characteristics or section namesLove Open Source and this site? Check out how you can help us