xrv3ovl's repositories

Stargazers:0Issues:0Issues:0

Rhaast

doesnt work and wont work on it anymore

Stargazers:0Issues:0Issues:0

DojoLoader

Generic PE loader for fast prototyping evasion techniques

License:Apache-2.0Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

yextend

Yara integrated software to handle archive file data.

License:BSD-3-ClauseStargazers:0Issues:0Issues:0

Disable-TamperProtection

A POC to disable TamperProtection and other Defender / MDE components

License:NOASSERTIONStargazers:0Issues:0Issues:0

superfetch

Translate virtual addresses to physical addresses from usermode.

License:MITStargazers:0Issues:0Issues:0

Hades-Windows

Purity toolsHades A HIDS is designed run on Windows

Language:C++License:Apache-2.0Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

Dsebler

Reimplementation of the KExecDD DSE bypass technique.

Stargazers:0Issues:0Issues:0

GhostlyHollowingViaTamperedSyscalls

Implementing the ghostly hollowing PE injection technique using tampered syscalls.

License:MITStargazers:0Issues:0Issues:0

VasieDrv

Simple .data ptr driver Maybe someone can learn from it idk

Stargazers:0Issues:0Issues:0

SentinelBruh

Dirty PoC on how to abuse S1's VEH for Vectored Syscalls and Local Execution

License:GPL-2.0Stargazers:0Issues:0Issues:0

cpplox

cpplox is a Lox interpreter & LLVM compiler written in C++

License:MITStargazers:0Issues:0Issues:0

Win11Debloat

A simple, easy to use powershell script to remove bloatware apps from windows, disable telemetry, bing in windows search aswell as perform various other changes to declutter and improve your windows experience. This script works for both windows 10 and windows 11.

License:MITStargazers:0Issues:0Issues:0
License:MITStargazers:0Issues:0Issues:0
License:NOASSERTIONStargazers:0Issues:0Issues:0

SkarDriver

IOCTL Dispatch driver to rw mem and more, the last version was used all over the community so i deicded to reamek the usermode (and km ;)). This is meant to learn and hope u learn shit from the kernel mode documentation i did

Stargazers:0Issues:0Issues:0

nefcon

Windows device driver installation and management tool.

License:MITStargazers:0Issues:0Issues:0

Malware_Specimens

This GitHub repository contains benign specimens; however, the techniques demonstrated herein could potentially be exploited for malicious purposes. Exercise discretion and responsibility in their usage. I disclaim any liability for actions resulting from your utilization of this content.

Stargazers:0Issues:0Issues:0

IoCreateDriver

IoCreateDriver Implementation and it can be handful if you're trying to bypass anticheats

Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

etw_hook_latest

etw hook (syscall/infinity hook) compatible with the latest Windows version of PG

Stargazers:0Issues:0Issues:0

KDP-compatible-driver-loader

KDP compatible unsigned driver loader leveraging a write primitive in one of the IOCTLs of gdrv.sys

Stargazers:0Issues:0Issues:0

MSFT_DriverBlockList

Repository of Microsoft Driver Block Lists based off of OS-builds

License:MITStargazers:0Issues:0Issues:0
License:MITStargazers:0Issues:0Issues:0

memhv

Minimalistic hypervisor with memory introspection capabilities

License:MITStargazers:0Issues:0Issues:0

BlackLotus

BlackLotus UEFI Windows Bootkit

Stargazers:0Issues:0Issues:0

modern-cpp-template

A template for modern C++ projects using CMake, Clang-Format, CI, unit testing and more, with support for downstream inclusion.

License:UnlicenseStargazers:0Issues:0Issues:0

WhoIsWho

Amazing whoami alternatives

Stargazers:0Issues:0Issues:0