Skip to content

Covert kernel-to-usermode communication channel implemented via shared memory, hidden using DKOM (Direct Kernel Object Manipulation).

Notifications You must be signed in to change notification settings

nevergiveupcpp/krnl-shm-comm

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

7 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

krnl-shm-comm

Covert kernel-to-usermode communication channel implemented via shared memory, hidden using DKOM (Direct Kernel Object Manipulation).

Proof of Concept

Windows Object Manager Manipulation via DKOM

Disclaimer

All actions were carried out solely for the purpose of studying defensive systems and testing the functionality and effectiveness of the methods described. I strongly condemn any interference with someone else's process!

Credits

KDmapper

About

Covert kernel-to-usermode communication channel implemented via shared memory, hidden using DKOM (Direct Kernel Object Manipulation).

Topics

Resources

Stars

Watchers

Forks