Archie Profile
Archie

@Archie_1997

Followers
427
Following
105
Media
9
Statuses
68

A teen with an aspiration for computers, likes to code in C / C++ every once in a while.

Joined October 2021
Don't wanna be here? Send us removal request.
@Archie_1997
Archie
2 months
RT @_winterknife_: TIL: If you disable DSE by modifying nt!g_CiOptions to load an unsigned kernel driver, it will be logged :) https://t.co….
0
10
0
@Archie_1997
Archie
3 months
RT @sixtyvividtails: Microsoft put C:\inetpub junk there for a reason 🫠.CVE-2025-21204 #greatfix
Tweet media one
0
27
0
@Archie_1997
Archie
3 months
Getting code execution in a process that cannot be located using traditional kernel APIs and is untouchable from usermode? All while staying PatchGuard-friendly?. Sign me up:
4
93
436
@Archie_1997
Archie
3 months
Dug into @RiotVanguard's kernel driver's dispatch table hooks. The article took an unexpected turn half way through, as I found some not yet documented stuff, such as the complete list of system calls hooked by the driver. Article link:.
1
55
180
@Archie_1997
Archie
3 months
ETW is an incredibly powerful tool in the wrong hands. Just finished writing about how it allows drivers to hook context switches on Windows 11 24H2 while remaining PatchGuard and HVCI compatible:
5
75
242
@Archie_1997
Archie
3 months
Hooking context switches on 24H2 like InfinityHook did in the old days. My first writeup's coming soon 😊
Tweet media one
4
0
5
@Archie_1997
Archie
1 year
RT @virtuallyfun: Is it me or does it look like the crowdstrike driver is loading arbitrary binary files into kernel space and executing th….
0
11
0
@Archie_1997
Archie
1 year
Turns out if you bp nt!MiCopyFromUntrustedMemory, you prevent WinDbg from working at all
Tweet media one
11
0
3
@Archie_1997
Archie
1 year
yooo why vgk.sys tryna query KVM clocks, I ain't even running the riot client 😭😭😭.#valorant #vanguard
Tweet media one
1
1
7
@Archie_1997
Archie
1 year
RT @endermanch: Ever wondered how those custom loaders work?. They're native user-mode applications running under SMSS — «BootExecute appli….
0
15
0
@Archie_1997
Archie
1 year
RT @luciascarlet: just updated Windows what the FUCK is this
Tweet media one
0
364
0
@Archie_1997
Archie
2 years
#HoloCure modding has made a lot of advances in 2023, and it's now possible to mod the official YYC versions. Most of the currently worked-on projects are listed in this Reddit thread on the official subreddit: 2024 will hopefully bring even more mods.
0
0
0
@Archie_1997
Archie
2 years
so apparently it's possible to delete files that are in-use in Windows - nuking the entire C:\Windows folder was a bad idea😅. i wonder what happens if this runs during the windows setup🤔 @endermanch
0
0
1
@Archie_1997
Archie
2 years
RT @endermanch: The Anti-AntiAdblocker uBlock Origin filter to get rid of the annoying YouTube message. It turns off the JavaScript anti-ad….
0
6K
0
@Archie_1997
Archie
2 years
RT @yarden_shafir: 170 of the drivers load with the most recent HVCI driver blocklist. Do with this information wha….
0
83
0
@Archie_1997
Archie
2 years
RT @NTDEV_: hehe
Tweet media one
0
27
0
@Archie_1997
Archie
3 years
RT @gf_256: Amazing how many problems you can solve on Windows by killing dllhost. Its almost like COM was a mistake.
0
1
0
@Archie_1997
Archie
3 years
RT @jessicammoss: Who else copy/pastes text into Notepad and then copy/pastes the same text back into their original app just to remove for….
0
229
0
@Archie_1997
Archie
3 years
RT @gf_256: trying this radical productivity hack where i simply DO NOT LOOK AT TWITTER.
0
4
0
@Archie_1997
Archie
3 years
RT @gf_256: Lol not even surprised. That driver mhyprot2.sys is absolutely cooked.
0
12
0