DLL that hooks the NtQuerySystemInformation API and hides a process name
-
Updated
May 12, 2023 - C
DLL that hooks the NtQuerySystemInformation API and hides a process name
🐧 Assembly with Linux (Notes, Syscalls, Protection Rings) 🐧
Different API Hooking Techniques - Ring3 (Detours, Trampoline, IAT and EAT) for both, x64 and x32 PE files - Since 2014.
Ring -4 to Ring 0: offense-defense firmware research platform. We build the bootkits, then we catch them. Closed-loop. Zero trust in silicon.
Real-time Intel ME/CSME Ring -3 monitor — HECI bus probing, firmware registers, MEI clients, PMT telemetry. Read-only, zero risk. FastAPI + React, 19-section dashboard.
To associate your repository with the ring-3 topic, visit your repo's landing page and select "manage topics."