cpkt9762's repositories
HwID-Kernel-Spoofer-Base-ImGui-UD-EAC-BE
This is a simple example in ImGui of a Kernel HwID Spoofer, currently UD on EAC and BE tested on Fortnite and Apex (10/01/2022)
be-shellcode-tester
BattlEye shellcodes tester
BranchTrace
基于Intel BTS(Branch Trace Store)技术开发实现的线程级代码追踪工具
CrashLogger
A dll injected into process to dump stack when crashing.
delete-self-poc
A way to delete a locked, or current running executable, on disk.
EasyAntiPatchGuard
Easy Anti PatchGuard
HelloActions-Qt
Qt use github-actions(Qt项目使用github的持续集成)
herpaderping
Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.
hosts
GitHub最新hosts。解决GitHub图片无法显示,加速GitHub网页浏览。
KSOCKET
KSOCKET provides a very basic example how to make a network connections in the Windows Driver by using WSK
LIEF
LIEF - Library to Instrument Executable Formats
llvmbooks
编译器相关资料
logitech-cve
10/11/2020
MAJESTY-technologies
Little driver for detect UM/KM debugger and Hypervisor
MasterHide
MasterHide x64 Rootkit
MMInject
Kernel DLL Injector using PTE Manipulation (NX) and VAD hide for hiding injected DLL
NoScreen
Hiding the window from screenshots using the function win32kfull::ChangeWindowTreeProtection
PageTableInjection
Code Injection, Inject malicious payload via pagetables pml4.
spoof-hwid-hook-owned_alignment
Hooking kernel functions by abusing alignment
VanderLeague
Hypervisor-assisted internal League of Legends hack
VX-API
Collection of various WINAPI tricks / features used or abused by Malware
wow64Jit
Call 32bit NtDLL API directly from WoW64 Layer
xorstr
heavily vectorized c++17 compile time string encryption.
XPEViewer
PE file viewer/editor for Windows, Linux and MacOS.
YY-Thunks
Fix DecodePointer, EncodePointer,RegDeleteKeyEx etc. APIs not found in Windows XP RTM.