Skip to content
View waterbear515's full-sized avatar

Block or report waterbear515

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Simple Intel VT-x hypervisor

C++ 280 75 Updated Dec 10, 2023

State-of-the-art native debugging tools

C 3,127 399 Updated Mar 3, 2025

Hypervisor with EPT hooking support.

C++ 204 29 Updated Feb 1, 2025

Disks for DMA

C 103 22 Updated Apr 28, 2021

BattlEye shellcodes tester

C++ 140 49 Updated Jan 3, 2022

Intel VT-x based hypervisor aiming to provide a thin VM-exit filtering platform on Windows.

C++ 1,595 417 Updated Nov 24, 2023

SimpleSvmHook is a research purpose hypervisor for Windows on AMD processors.

C++ 373 74 Updated Feb 18, 2021

Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executable pages. (VAD hide / NX bit swapping)

C 309 88 Updated Jan 29, 2022

Call of Duty: Modern Warfare 2019 client tracking

29 10 Updated Dec 16, 2020

KDStinker fork, targeting latest intel driver from 2019

C++ 10 8 Updated Jan 4, 2021

Stealthy way to hijack the existing game process handle within the game launcher (currently supports Steam and Battle.net). Achieve external game process read/write with minimum footprint.

C++ 98 22 Updated Apr 10, 2021

HWID Spoofer which spoofs disk serials, smart disk serials and SMBIOS.

C++ 41 12 Updated Aug 31, 2020

PoC HWID spoofer that runs in EFI

C 297 73 Updated Dec 26, 2024

KDMapper is a simple tool that exploits iqvw64e.sys Intel driver to manually map non-signed drivers in memory

C++ 2,172 526 Updated Feb 9, 2025

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

C++ 3,251 445 Updated Feb 27, 2025

C++20, x86/x64 Hooking Libary v2.0

C++ 1,664 230 Updated Aug 1, 2024

Access without a real handle

C 923 228 Updated Apr 10, 2021

UEFI bootkit for driver manual mapping

C 533 100 Updated Jan 1, 2024

DLL scatter manual mapper

C++ 735 152 Updated Apr 10, 2021

MouClassInputInjection implements a kernel interface for injecting mouse input data packets into the input data stream of HID USB mouse devices.

C++ 318 83 Updated Apr 20, 2020

VivienneVMM is a stealthy debugging framework implemented via an Intel VT-x hypervisor.

C++ 797 181 Updated Sep 7, 2020

A plugin for ReClass.NET to manipulate memory in a virtual machine.

C++ 8 1 Updated Oct 5, 2020

KVM-based Virtual Machine Introspection

Jinja 328 62 Updated Nov 2, 2024

LibVMI-based debug server, implemented in Python. Building a guest aware, stealth and agentless full-system debugger

Python 216 25 Updated Nov 17, 2020

physical memory introspection framework

Rust 827 69 Updated Jan 6, 2025

A mini anti-anti debug hooking library for Windows.

C++ 106 30 Updated Jan 3, 2021

A simple open source module injector library x86/x64 for Windows

C++ 21 6 Updated Jan 16, 2020

A Cheat for Call of Duty: Modern Warfare written in Rust using my memlib-rs library

45 17 Updated Apr 1, 2022
Next