ufrisk / MemProcFS

MemProcFS
GNU Affero General Public License v3.0
2.8k stars 352 forks source link

need kernl call Example #287

Closed 11azd221 closed 2 months ago

ufrisk commented 2 months ago

It's not possible to call ntoskrnl.exe or any other process directly with DMA.

For that you'd need to get code execution on the target computer first. PCILeech have some implants for this. MemProcFS which is about memory analysis only does not support this directly.