Skip to content
View ZeroLP's full-sized avatar
🎯
Focusing
🎯
Focusing
  • Australia
  • 14:24 (UTC +10:00)

Block or report ZeroLP

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Demonstrates that NvAPI_D3D11_WksReadScanout (undocumented, interface 0xBCB1C536) can read the GPU scanout buffer directly, bypassing any overlay or render-target protection that anti-cheat softwar…

C++ 59 14 Updated Mar 8, 2026

WinVisor - A hypervisor-based emulator for Windows x64 user-mode executables using Windows Hypervisor Platform API

C++ 666 46 Updated Jan 23, 2025

A library to manipulate physical memory from usermode.

C++ 303 76 Updated Sep 5, 2023

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

C++ 1,117 163 Updated Jun 17, 2022

Create a new thread that will suspend every thread and encrypt its stack, then going to sleep , then decrypt the stacks and resume threads

C++ 167 28 Updated Aug 2, 2023

different ntdll unhooking techniques : unhooking ntdll from disk, from KnownDlls, from suspended process, from remote server (fileless)

C++ 205 41 Updated Aug 2, 2023

Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll , and trigger exported APIs from the export table

C++ 307 47 Updated Aug 2, 2023

Convert 32-bit x86 programs to 64-bit x86-64 on macOS.

C++ 30 1 Updated Mar 28, 2022

Windows Kernel inject (no module no thread)

C++ 283 63 Updated Nov 11, 2022

Whole-Program Reverse Engineering with GPT-3

Python 381 30 Updated Dec 31, 2022

driver manual mapper powered by https://github.com/estimated1337/lenovo_exec

C++ 118 25 Updated Dec 28, 2022

Call stack spoofing for Rust

Rust 378 35 Updated Feb 7, 2025

The project is designed as a file resource cloner. Metadata, including digital signature, is extracted from one file and injected into another.

HTML 373 76 Updated Nov 19, 2024

Windows Kernel Driver Development in C# with Windows Driver Kit (WDK)

C# 88 1 Updated Nov 22, 2022

DiaryJournal.Net is an open source and free desktop and laptop software from Tushar Jain for all kinds of writers, book and story writing, educational, notes keeping, journal and diary. for latest …

C# 13 1 Updated Jan 22, 2026

Alternative Shellcode Execution Via Callbacks

C++ 1,727 330 Updated Nov 11, 2022

Collection of remote authentication triggers in C#

C 532 62 Updated May 15, 2024

Open-source Windows and Office activator featuring HWID, Ohook, TSforge, and Online KMS activation methods, along with advanced troubleshooting.

Batchfile 178,429 17,073 Updated Jun 11, 2026

Play lunar lander in you windows file copy dialog

C# 3,610 80 Updated Mar 23, 2025

Samples for the article "Interception and modifying TCP connections from kernel on Windows and Linux systems"

C++ 12 7 Updated Jun 29, 2023

Tiny driver patch to allow kernel callbacks to work on Win10 21h1

C++ 34 8 Updated Feb 7, 2022
Python 443 71 Updated Jan 1, 2025

Parsing gigabytes of JSON per second : used by Facebook/Meta Velox, the Node.js runtime, ClickHouse, WatermelonDB, Apache Doris, Milvus, StarRocks

C++ 23,841 1,260 Updated Jun 13, 2026

A small POC to make defender useless by removing its token privileges and lowering the token integrity

C++ 692 126 Updated Jun 28, 2022

Simple EFI runtime driver that hooks GetVariable function and returns data expected by Windows to make it think that it's running with secure boot enabled (faking secure boot)

C 222 30 Updated Oct 1, 2021

C# Kernel Mode Driver example using NativeAOT

C# 192 27 Updated Jan 3, 2022

A mini x86-64 assembler.

C 227 17 Updated May 14, 2026

x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration

C++ 401 70 Updated Jul 6, 2022
Next