Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls
-
Updated
Aug 31, 2025 - Rust
Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls
The project uses SSDT Hooking to bypass security checks during driver loading by hooking NtLoadDriver and modifying the PreviousMode flag.
Add a description, image, and links to the ssdt-hooking topic page so that developers can more easily learn about it.
To associate your repository with the ssdt-hooking topic, visit your repo's landing page and select "manage topics."