xrv3ovl's repositories

acdrv

base for testing

Language:C++Stargazers:0Issues:0Issues:0

BlackLotus

BlackLotus UEFI Windows Bootkit

Stargazers:0Issues:0Issues:0

cpplox

cpplox is a Lox interpreter & LLVM compiler written in C++

License:MITStargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

Dsebler

Reimplementation of the KExecDD DSE bypass technique.

Stargazers:0Issues:0Issues:0

etw_hook_latest

etw hook (syscall/infinity hook) compatible with the latest Windows version of PG

Stargazers:0Issues:0Issues:0

GhostlyHollowingViaTamperedSyscalls

Implementing the ghostly hollowing PE injection technique using tampered syscalls.

License:MITStargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

Hades-Windows

Purity toolsHades A HIDS is designed run on Windows

Language:C++License:Apache-2.0Stargazers:0Issues:0Issues:0

IoCreateDriver

IoCreateDriver Implementation and it can be handful if you're trying to bypass anticheats

Stargazers:0Issues:0Issues:0

KDP-compatible-driver-loader

KDP compatible unsigned driver loader leveraging a write primitive in one of the IOCTLs of gdrv.sys

Stargazers:0Issues:0Issues:0
Language:CStargazers:0Issues:0Issues:0

Malware_Specimens

This GitHub repository contains benign specimens; however, the techniques demonstrated herein could potentially be exploited for malicious purposes. Exercise discretion and responsibility in their usage. I disclaim any liability for actions resulting from your utilization of this content.

Stargazers:0Issues:0Issues:0

memhv

Minimalistic hypervisor with memory introspection capabilities

Language:C++License:MITStargazers:0Issues:0Issues:0

modern-cpp-template

A template for modern C++ projects using CMake, Clang-Format, CI, unit testing and more, with support for downstream inclusion.

License:UnlicenseStargazers:0Issues:0Issues:0

MSFT_DriverBlockList

Repository of Microsoft Driver Block Lists based off of OS-builds

License:MITStargazers:0Issues:0Issues:0

nefcon

Windows device driver installation and management tool.

License:MITStargazers:0Issues:0Issues:0

Nidhogg

Nidhogg is an all-in-one simple to use rootkit for red teams.

Language:C++License:GPL-3.0Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

RealBlindingEDR

Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...

License:MITStargazers:0Issues:0Issues:0
License:NOASSERTIONStargazers:0Issues:0Issues:0

rtypes

A simple but useful project maybe help you reverse Windows.

License:GPL-3.0Stargazers:0Issues:0Issues:0

SentinelBruh

Dirty PoC on how to abuse S1's VEH for Vectored Syscalls and Local Execution

License:GPL-2.0Stargazers:0Issues:0Issues:0
Language:PythonLicense:MITStargazers:0Issues:0Issues:0

SkarDriver

IOCTL Dispatch driver to rw mem and more, the last version was used all over the community so i deicded to reamek the usermode (and km ;)). This is meant to learn and hope u learn shit from the kernel mode documentation i did

Stargazers:0Issues:0Issues:0

superfetch

Translate virtual addresses to physical addresses from usermode.

License:MITStargazers:0Issues:0Issues:0
License:MITStargazers:0Issues:0Issues:0

VasieDrv

Simple .data ptr driver Maybe someone can learn from it idk

Stargazers:0Issues:0Issues:0

Win11Debloat

A simple, easy to use powershell script to remove bloatware apps from windows, disable telemetry, bing in windows search aswell as perform various other changes to declutter and improve your windows experience. This script works for both windows 10 and windows 11.

License:MITStargazers:0Issues:0Issues:0

yextend

Yara integrated software to handle archive file data.

License:BSD-3-ClauseStargazers:0Issues:0Issues:0