Skip to content
View estimated1337's full-sized avatar

Block or report estimated1337

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
43 stars written in C
Clear filter

State-of-the-art native debugging tools

C 3,561 448 Updated Dec 2, 2025

SoftICE-like kernel debugger for Windows 11

C 1,001 137 Updated Jul 18, 2023

High-speed secure pseudorandom function for short messages

C 734 58 Updated May 17, 2024

kernel mode anti cheat

C 604 116 Updated Aug 4, 2024

The Grimoire Hypervisor solution for x86 Processors with experimental nested virtualization support. Remastering with Rust in progress.

C 589 93 Updated Dec 13, 2025

C++ self-Injecting dropper based on various EDR evasion techniques.

C 420 71 Updated Feb 11, 2024

The first analysis framework for CPU microcode

C 411 26 Updated Mar 13, 2023

XXTEA encryption algorithm library for C.

C 372 112 Updated Oct 3, 2023

Emulate Drivers in RING3 with self context mapping or unicorn

C 361 104 Updated Aug 18, 2022

PoC HWID spoofer that runs in EFI

C 327 75 Updated Dec 26, 2024

A kernel driver for reading and writing memory

C 307 82 Updated May 12, 2023

xigmapper is a driver manual mapper that loads your driver before Vanguard, but after critical system infrastructure has been set up, allowing you to write your bypass without worrying about the in…

C 282 65 Updated Jan 18, 2024

System Management Mode (SMM) game cheating framework

C 270 62 Updated Nov 24, 2025

Admin to Kernel code execution using the KSecDD driver

C 259 43 Updated Apr 19, 2024

Using CVE-2023-21768 to manual map kernel mode driver

C 196 39 Updated Mar 10, 2023

Drawing from kernelmode without any hooks

C 173 40 Updated Jul 7, 2022

Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).

C 158 15 Updated Aug 23, 2024

nmi stackwalking + module verification

C 150 30 Updated Dec 28, 2023

Cobalt Strike (CS) Beacon Object File (BOF) for kernel exploitation using AMD's Ryzen Master Driver (version 17).

C 150 29 Updated Jan 21, 2023

Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unauthorized modifications to the Windows kernel. The analysis is…

C 130 28 Updated Apr 26, 2023

A plugin to x64dbg that lets you find out what writes to/accesses particular address

C 116 16 Updated Dec 15, 2020

An implementation of the Salsa20 stream cipher in C99

C 116 25 Updated Jul 29, 2016

Example of reading process memory through kernel special APC

C 110 35 Updated Apr 21, 2023

A perfect driver for game hack

C 100 70 Updated Feb 13, 2025

Example Windows Kernel-mode Driver which enumerates running processes.

C 58 24 Updated Jul 17, 2022

bypass to the p2c(s) that I have run over the past few months.

C 55 30 Updated Feb 4, 2023

Small C99 and C++98 library to parse SMBIOS information

C 46 10 Updated Dec 11, 2025
Next