Pinned Repositories
BlairInjector
Ring0 meme wey
HdeWrapper
Find your offsets the cool way, :)
InterDKOM
Kernelmode driver with hijacked IOCTL payload, physical memory support and DTB bruteforce
pipedriver
Communicate from ring-0 to ring-3 using NamedPipes.
ssdtmeme
Demonstrates SSDT hooking, technique often used by BattlEye. Only works in ring-0 privileges
ValorantOffsets
Always updated and freshly dumped with HdeWrapper
wardenrekter
Emulate OW2 AC
reflection101's Repositories
reflection101/BlairInjector
Ring0 meme wey
reflection101/pipedriver
Communicate from ring-0 to ring-3 using NamedPipes.
reflection101/HdeWrapper
Find your offsets the cool way, :)
reflection101/ssdtmeme
Demonstrates SSDT hooking, technique often used by BattlEye. Only works in ring-0 privileges
reflection101/wardenrekter
Emulate OW2 AC
reflection101/InterDKOM
Kernelmode driver with hijacked IOCTL payload, physical memory support and DTB bruteforce
reflection101/VulnKernelDriver-GLC
reflection101/ValorantOffsets
Always updated and freshly dumped with HdeWrapper
reflection101/EasyAntiCheat-Emulator
Simple DLL that spoofs EasyAntiCheat on most games
reflection101/smart-uefi
communicate through EFI variables without an EFI driver
reflection101/Base
reflection101/nojector_kernel
van152 speedrun
reflection101/OnlyCerts-POC
Whitelist certificates from ring3, cba add integrity checks to prevent program for being tampered with
reflection101/shmb
runtime shared memory ring0 example
reflection101/Awesome-Bootkits-Rootkits-Development
A curated compilation of extensive resources dedicated to bootkit and rootkit development.
reflection101/BlackLotus
BlackLotus UEFI Windows Bootkit
reflection101/blairhv
x64 intel hypervisor with vmcs, vmx and physical page support
reflection101/EfiCMake
CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).
reflection101/FecurityCODWebApi
Run on flask on VPS, used for auto page translation
reflection101/Hyper-V-scripts
Hyper-V scripts
reflection101/Memeory
Unlock paging table accesses on Windows.
reflection101/memflow
physical memory introspection framework
reflection101/ultracage
Config files for my GitHub profile.
reflection101/umap
Temp repo to spoof btbd/umap edit date
reflection101/unvirt_driver
tested on vgk
reflection101/vmread-rs
Rust bindings for vmread
reflection101/W10M_unedited-decomp
Pure Hex-rays Decompiler Psudocode of various Windows 10 Mobile binaries, No edit have been done to the output, you will need to piece together each function, class etc.Provided "as-is"