pseudo-code to show how to disable patchguard with win10
Easy Anti PatchGuard
Disable PatchGuard and Driver Signature Enforcement at boot time
翻译 - 引导时禁用PatchGuard和DSE
Bypassing PatchGuard on modern x64 systems
win10 pgContext dynamic dump (btc version)
Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unauthorized modifications to the Windows kernel. The analysis is do...
disable most common windowsx64 systems patchguard
Bootkit for Windows Sandbox to disable DSE/PatchGuard.
x64 Windows PatchGuard bypass, register process-creation callbacks from unsigned code
Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard