github Actively maintained

armvirus/SinMapper

usermode driver mapper that forcefully loads any signed kernel driver (legit cert) with a big enough section (example: .data, .rdata) to map your driver over. the main focus of this project is to prevent modern anti-cheats (BattlEye, EAC) from finding your driver and having the power to hook anything due to being inside of legit memory (signed legit driver).

1 awesome list

Quick read

Stars
501
Forks
75
Open issues
0
Commits
16

Activity and growth

Latest capture 2026-07-29 03:03

Stars · last 7 days
No history
Commits · last 7 days
No history
Stars since tracking
+3
Stored snapshots
3

Metadata

Language
C++
Default branch
main
Created
2021-08-13
First commit
2021-08-13
Last pushed
2022-01-03
GitHub updated
2026-07-29
Last synced
2026-07-29 03:03
Stack scanned
2026-07-29 03:03
Archived
No

AI development signals

0 paths

Agent instructions and tool configuration found in this repository.

No config files detected.

Growth history

Tracked growth

3 observed captures since 2026-06-24. Charts use measured snapshots only.

Stars from first capture +3

Time horizon

All tracked data

Custom date range

Stars history

Observed snapshots

Commits history

Observed snapshots

Similar repositories

Nearest indexed repositories by embedding similarity.

armvirus/CosMapper

Loads a signed kernel driver which allows you to map any driver to kernel mode without any traces of the signed / mapped driver.

407 stars
C++ 1 awesome list

gmh5225/PdFwKrnlMapper

An Unsigned Driver Mapper for Windows 10 22H2 -> Windows 11 23H2 that uses PdFwKrnl to exploit the Read/Write IOCTL Calls to disable DSE & PG to map the unsigned driver.

1 stars
1 awesome list