NtSymbol
evil-mhyprot-cli
NtSymbol | evil-mhyprot-cli | |
---|---|---|
1 | 3 | |
94 | 299 | |
- | - | |
0.0 | 2.6 | |
over 2 years ago | almost 3 years ago | |
C++ | C++ | |
MIT License | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
NtSymbol
evil-mhyprot-cli
-
Daily Questions Megathread (August 30, 2022)
It's real. It's possible to hijack genshin's anticheat driver, mhyprot3.sys to gain kernel-level access, and since it's a verified legit driver it gets past antivirus. Here's a proof of concept made over a year ago https://github.com/kkent030315/evil-mhyprot-cli
- Hoyoverse claims that requiring admin permission is perfectly normal, refuses to explain what Genshin needs it for
-
Tim Sweeney has a point about Fortnite EAC support
Depends on what you call damage, I guess. Sometimes anti-cheat software is vulnerable and other times these companies are just not trustworthy enough to believe they won't pull a Sony BMG.
What are some alternatives?
CVE-2020-15368 - CVE-2020-15368, aka "How to exploit a vulnerable driver"
Mhyprot2DrvControl - A lib that allows using mhyprot2 driver for enum process modules, r/w process memory and kill process.
Cronos-Rootkit - Cronos is Windows 10/11 x64 ring 0 rootkit. Cronos is able to hide processes, protect and elevate them with token manipulation.
ViGEmBus - Windows kernel-mode driver emulating well-known USB game controllers.
RootKits-List-Download - This is the list of all rootkits found so far on github and other sites.
GarHal_CSGO - A project that demonstrates how to screw with CSGO from Kernel Space. (CSGO Kernel Cheat/Hack) All cleaned up, and with updated offsets.
Nidhogg - Nidhogg is an all-in-one simple to use rootkit.
BsodSurvivor - This project aims to facilitate debugging a kernel driver in windows by adding support for a code change on the fly without reboot/unload, and more!
herpaderping - Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.
ds3-nrssr-rce - Documentation and proof of concept code for CVE-2022-24125 and CVE-2022-24126.
MhyprotDriver - [UnavailableForLegalReasons - Repository access blocked]