mash hypervisor host pml4
Updated 2025-11-24 15:47:24 +08:00
PoC EFI runtime driver for memory r/w & kdmapper fork
Updated 2025-11-24 15:41:25 +08:00
An Unsigned Driver Mapper for Windows 10 22H2 -> Windows 11 23H2 that uses PdFwKrnl to exploit the Read/Write IOCTL Calls to disable DSE & PG to map the unsigned driver.
Updated 2025-11-24 15:40:09 +08:00
KVC enables unsigned driver loading via DSE bypass (g_CiOptions patch/skci.dll hijack) and PP/PPL manipulation for LSASS memory dumping on modern Windows with HVCI/VBS.
bypass-dse-load-unsigned-driver-windows11
disable-windows-defender-tamper-protection
driver-signature-enforcement-bypass-hvci-windows
dump-lsass-memory-protected-process-light
kernel-driver-stealth-loading
protected-process-light-ppl-wintcb-bypass
secureboot-disable-unsigned-driver-load
unprotect-process-ppl-wintcb
windows-watermark-removal-tool
Updated 2025-11-24 09:38:16 +08:00
Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool
Updated 2025-11-24 09:35:25 +08:00