Pinned Repositories
EasyAntiCheat-Emulator
Simple DLL that spoofs EasyAntiCheat on most games
HdeWrapper
Find your offsets the cool way, :)
InterDKOM
Kernelmode driver with hijacked IOCTL payload, physical memory support and DTB bruteforce
Memeory
Unlock paging table accesses on Windows.
pipedriver
Communicate from ring-0 to ring-3 using NamedPipes.
ssdtmeme
Demonstrates SSDT hooking, technique often used by BattlEye. Only works in ring-0 privileges
ValorantOffsets
Always updated and freshly dumped with HdeWrapper
VulnKernelDriver-GLC
wardenrekter
Emulate OW2 AC
kuh4it's Repositories
kuh4it/HdeWrapper
Find your offsets the cool way, :)
kuh4it/pipedriver
Communicate from ring-0 to ring-3 using NamedPipes.
kuh4it/ssdtmeme
Demonstrates SSDT hooking, technique often used by BattlEye. Only works in ring-0 privileges
kuh4it/wardenrekter
Emulate OW2 AC
kuh4it/VulnKernelDriver-GLC
kuh4it/InterDKOM
Kernelmode driver with hijacked IOCTL payload, physical memory support and DTB bruteforce
kuh4it/ValorantOffsets
Always updated and freshly dumped with HdeWrapper
kuh4it/EasyAntiCheat-Emulator
Simple DLL that spoofs EasyAntiCheat on most games
kuh4it/Base
kuh4it/Memeory
Unlock paging table accesses on Windows.
kuh4it/OnlyCerts-POC
Whitelist certificates from ring3, cba add integrity checks to prevent program for being tampered with
kuh4it/shmb
runtime shared memory ring0 example
kuh4it/Awesome-Bootkits-Rootkits-Development
A curated compilation of extensive resources dedicated to bootkit and rootkit development.
kuh4it/BlackLotus
BlackLotus UEFI Windows Bootkit
kuh4it/blairhv
x64 intel hypervisor with vmcs, vmx and physical page support
kuh4it/EfiCMake
CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).
kuh4it/FecurityCODWebApi
Run on flask on VPS, used for auto page translation
kuh4it/Hyper-V-scripts
Hyper-V scripts
kuh4it/memflow
physical memory introspection framework
kuh4it/ultracage
Config files for my GitHub profile.
kuh4it/umap
Temp repo to spoof btbd/umap edit date
kuh4it/vmread-rs
Rust bindings for vmread
kuh4it/W10M_unedited-decomp
Pure Hex-rays Decompiler Psudocode of various Windows 10 Mobile binaries, No edit have been done to the output, you will need to piece together each function, class etc.Provided "as-is"