Making A Kernel Cheat - Part 1/3 - KM/UM Communication Via Function Hooking

Making A Kernel Cheat - Part 1/3 - KM/UM Communication Via Function Hooking

Null

3 года назад

147,870 Просмотров

Ссылки и html тэги не поддерживаются


Комментарии:

@user-vw5bj8om8g
@user-vw5bj8om8g - 14.01.2024 20:31

I learned c++ , python and CE , I made GUI hack ESP And Aimbot and A lot of internal cheats last 3 years.
this the time to learn how can I bypass anti_cheat, But I was surprised after this video that I missed a lot of exciting science. I want you to suggest some videos that will help me understand kernel programming from the beginning.

Ответить
@scemmaz
@scemmaz - 14.01.2024 14:06

when i inject with with kdmapper i get this error:
C:\Users\m\OneDrive\Desktop\New folder (2)>kdmapper.exe kernal.sys
[<] Loading vulnerable driver
[-] Failed to get export gdi32full.NtGdiDdDDIReclaimAllocations2
[-] Failed to allocate remote image in kernel
[-] Failed to map kernal.sys
[<] Unloading vulnerable driver

Ответить
@DrLifeGamer
@DrLifeGamer - 07.01.2024 02:44

it blue screens

Ответить
@zaradu1237
@zaradu1237 - 15.11.2023 21:30

does it bypass EAC, I heard is detected (not sure)

Ответить
@Noah.Nation
@Noah.Nation - 10.11.2023 02:46

If the anticheat is in usermode, do I even need to change the signature of the shell code? (The anticheat is Hyperion/Byfron)

Ответить
@huyvuquang2041
@huyvuquang2041 - 10.10.2023 04:07

Really appreciate this. Keep it up man. Amazing content

Ответить
@DeSibyl
@DeSibyl - 06.10.2023 17:31

Just curious, why do you not hook a function that has the "_security_cookie" in it? The NtQueryCompositionSurfaceStatistics has that in it now, but I tested anyways and it worked fine? Will it eventually BSOD?

Ответить
@DeSibyl
@DeSibyl - 06.10.2023 06:45

Since the function you used in this video is no longer safe to use (has the _security_cookie in it), How can we tell which one we can safely use without causing critical errors? I found one that looks good, but don't know if it is safe to use and won't cause system failure.

Ответить
@nullbeyondo
@nullbeyondo - 27.09.2023 13:11

Well, I'm kinda confused, not on the tutorial, it is easy and understandable; thank you! But on why would Anticheats like EAC, VAC, and so on even "compare" the vulnerable functions' instructions with their internal database of shell codes instead of just checking if its original code is still the same and hasn't been modified?

Ответить
@TaigaMonkey
@TaigaMonkey - 11.09.2023 12:02

This is for smart people.. Im disappointed 👎👎

Ответить
@kirbofn524
@kirbofn524 - 27.06.2023 02:05

Ik im just a mindless paster but i think most of us would appriciate how you got to these conclusions. As well as more explanations of ’What’ stuff does instead of how to find it.

Ответить
@rick.prime137
@rick.prime137 - 14.04.2023 22:18

thx

Ответить
@kolaxyt6298
@kolaxyt6298 - 24.02.2023 09:38

what makes a driver undetected?

Ответить
@dj_blackout
@dj_blackout - 11.01.2023 19:15

hi thanks for yours video but what is oeaugbaslg......exe ?

Ответить
@camellia_black
@camellia_black - 21.10.2022 23:23

Ya'll some cheating scrubs

Ответить
@LowSk
@LowSk - 26.09.2022 21:05

thx!

Ответить
@StephenAsuncion
@StephenAsuncion - 02.09.2022 02:32

Does anyone know if this works on win11?. I am able to hook the function but when calling the hook on user mode my console app just crashes!

Ответить
@fleks_walker9490
@fleks_walker9490 - 01.09.2022 10:35

Hey are u stil coding? i was wondering if u can make a custom .dll?

Ответить
@Tapsby7
@Tapsby7 - 18.08.2022 11:46

All the functions I've found blue screen me, HELP!!! pls

Ответить
@frontbro9571
@frontbro9571 - 24.07.2022 01:24

can i make the driver a x86??

Ответить
@Jinx000
@Jinx000 - 16.07.2022 13:48

Don’t think I’ve ever been learning and laughing at the same time nice shit bro

Ответить
@slick6227
@slick6227 - 26.05.2022 03:38

Its been a year but ill ask here anyway, is there a way to stay undetected while reading memory without having to bypassing, say, BattleEye for instance?

Ответить
@h4skiii
@h4skiii - 03.05.2022 23:35

Free undetected (i think) shell code guys(i made it but dont expect it to last):

mov rcx, xxx
mov rax, rcx
jmp rax

Ответить
@diorqwyzen5360
@diorqwyzen5360 - 19.04.2022 19:36

faite moi un karnel bande d'esclaves

Ответить
@likunyang4505
@likunyang4505 - 12.04.2022 15:02

I don't know if it will trigger pg

Ответить
@nightwolf6141
@nightwolf6141 - 07.04.2022 12:57

u just copy paste. why dont u explain what each line of code does!

Ответить
@jdm8963
@jdm8963 - 13.02.2022 18:54

This code is provoking "KiPageFault" exactly when RtlCopyMemory macro is called. I guess previous code is not allowing write privileges?

Ответить
@killjaqular
@killjaqular - 07.02.2022 21:07

wtf was the whole "windbg" emphasis lmao

Ответить
@jdm8963
@jdm8963 - 24.01.2022 21:16

So when you say "changing shellcode" you mean finding another set of instructions that do the same, right?

Ответить
@agrihonoberjorn1612
@agrihonoberjorn1612 - 23.01.2022 11:16

Is it bad that the main reason I’m learning stuff like this is so I can beat a few games without struggling for multiple days ? There single player hollow knight is one of em

Ответить
@BluescreenSharp
@BluescreenSharp - 10.11.2021 22:48

Can i make a undetected Esp in Rainbow Six Siege with this?

Ответить
@buddy3852
@buddy3852 - 19.10.2021 07:18

But why don’t you show us getting the function and the bytes. Don’t read off of your monitor and retype everything, teach. Explain

Ответить
@jackbang2561
@jackbang2561 - 09.10.2021 18:10

What is your typing background music? Really like it :)

Ответить
@ra7binet
@ra7binet - 28.09.2021 02:45

With all respect , Your discord server racist, and does not aim to share knowledge A lot of people talk about racism and Arabs and unrelated topics,

Ответить
@lalaschannel7854
@lalaschannel7854 - 10.09.2021 09:41

kernerl

Ответить
@aiminghigh1594
@aiminghigh1594 - 03.09.2021 16:35

do i have to get windbg

Ответить
@wolfram3161
@wolfram3161 - 27.07.2021 20:08

hooking first bytes ez detect, u should mid hook

Ответить
@MeatVision
@MeatVision - 15.07.2021 23:01

Why not learn how to play and have fun?

Ответить
@gregorychurch605
@gregorychurch605 - 13.07.2021 10:27

What the fuck you mean 'easily bypass' you're typing like 300 words per minute good god.

Ответить
@birchmaxey1883
@birchmaxey1883 - 22.06.2021 01:00

Is this still undetected by chance?

Ответить
@mapleint997
@mapleint997 - 20.06.2021 11:44

if you alloc page by tag you could make it just surrounded by single quotes ie. 'null'

Ответить
@simonedevaivo3866
@simonedevaivo3866 - 25.05.2021 00:10

ttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttt

Ответить