Nidhogg is an all-in-one simple to use windows kernel rootkit.
-
Updated
Oct 3, 2024 - C++
Nidhogg is an all-in-one simple to use windows kernel rootkit.
Cronos is Windows 10/11 x64 ring 0 rootkit. Cronos is able to hide processes, protect and elevate them with token manipulation.
A x64 Windows Rootkit using SSDT or Hypervisor hook
Experimental Windows x64 Kernel Rootkit with anti-rootkit evasion features.
InfinityHookPro Win7 -> Win11 latest
Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.
Windows x64 kernel mode rootkit process hollowing POC.
user-mode Rootkit
Hidden kernel mode code execution for bypassing modern anti-rootkits.
Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.
NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg
Add a description, image, and links to the rootkit topic page so that developers can more easily learn about it.
To associate your repository with the rootkit topic, visit your repo's landing page and select "manage topics."