Skip to content

A "Simple" example of a Intel VT and VT-d Hypervisor uses hardware-assisted virtualization. A siimple version of what I implemented for my Graduate thesis.

Notifications You must be signed in to change notification settings

JordanBoulan/WatchfulKitty

Repository files navigation

A "Simple" example of a Intel VT Hypervisor

This hypervisor is designed to load at runtime on Windows 10, when the driver loads, it activates virtualization and "subverts" the running Windows OS.

The kernel driver Becomes a lightweight hypervisor and the already running Windows 10 actually becomes a VM. You can use this along with EPT to hook system functions WITHOUT triggering Patchguard.
It can also be used to debug specific processes. The driver is not signed. You need to disable driver signiture enforcement to load it!

This is a simple version of what I implemented for my Master's thesis project. It doesn't do much but some VM_EXIT cases are handled.
The above applications are not implemented in this simple example, but very possible. This is meant to be a tool to learn from.

About

A "Simple" example of a Intel VT and VT-d Hypervisor uses hardware-assisted virtualization. A siimple version of what I implemented for my Graduate thesis.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published