research revolving the windows filtering platform callout mechanism
☆39May 26, 2024Updated last year
Alternatives and similar repositories for WFPCalloutReserach
Users that are interested in WFPCalloutReserach are comparing it to the libraries listed below
Sorting:
- Source files for my posts☆17Jun 20, 2023Updated 2 years ago
- ☆33Dec 22, 2020Updated 5 years ago
- Simple command line tool to enumerate loaded WFP callout drivers☆10Feb 2, 2024Updated 2 years ago
- Experiment to use sections as User/Kernelmode comm vector☆22Apr 7, 2023Updated 2 years ago
- ☆16Oct 7, 2020Updated 5 years ago
- Detect removed thread from PspCidTable.☆75Mar 18, 2022Updated 3 years ago
- Enumerate Callbacks and all Object Types☆16Jan 9, 2023Updated 3 years ago
- 正确解析 _HEAP_VS_***符号 ,支持在最新win11 24h2 运行,替换windbg自带的!pool命令☆17Nov 30, 2024Updated last year
- Some drivers I've written while solving exercises from Practical Reverse Engineering☆15Jan 9, 2022Updated 4 years ago
- anti-ransomware file-system filter☆69Sep 3, 2024Updated last year
- manual map unsigned driver over signed memory☆221Apr 11, 2024Updated last year
- Code Integrity Violation Spotter☆17Jun 11, 2024Updated last year
- An example code of CiGetCertPublisherName☆16Mar 24, 2022Updated 3 years ago
- PoC kernel to usermode injection☆105Feb 26, 2024Updated 2 years ago
- ☆47Jul 7, 2024Updated last year
- ☆26Sep 29, 2022Updated 3 years ago
- ☆17Oct 31, 2022Updated 3 years ago
- KDP compatible unsigned driver loader leveraging a write primitive in one of the IOCTLs of gdrv.sys☆165Jun 14, 2024Updated last year
- Windows Kernel Driver dlls injector using APC☆64Aug 11, 2018Updated 7 years ago
- 从MmPfnData中枚举进程和页目录基址☆207Aug 18, 2023Updated 2 years ago
- Disks for DMA☆141Apr 28, 2021Updated 4 years ago
- Report and exploit of CVE-2024-21305.☆41Jan 14, 2024Updated 2 years ago
- .lib file for linking against the NT CRT☆19Mar 18, 2022Updated 3 years ago
- Files for http://blog.deniable.org/posts/windows-callbacks/☆77Feb 26, 2022Updated 4 years ago
- Easy to include string and wstring obfuscation☆23Mar 12, 2022Updated 3 years ago
- WFP Traffic Redirection Driver is used to redirect NIC traffic on network layer and framing layer, based on Windows Filtering Platform (W…☆117Jun 30, 2018Updated 7 years ago
- Windows NT port of 'Main is usually a function. So then when is it not?'☆27Mar 11, 2024Updated last year
- silence file system monitoring components by hooking their minifilters☆60Jan 31, 2024Updated 2 years ago
- ☆23May 8, 2023Updated 2 years ago
- anti cheat drv open source☆19Apr 18, 2024Updated last year
- An advanced DKOM for drivers with "DRIVER_OBJECT"☆22Feb 19, 2023Updated 3 years ago
- windows rpc 使用MIDL+RPC实现HelloWorld☆23Mar 21, 2018Updated 7 years ago
- WinHvShellcodeEmulator (WHSE) is a shellcode emulator leveraging the Windows Hypervisor Platform API☆26Apr 24, 2022Updated 3 years ago
- NT AUTHORITY\SYSTEM☆43Jul 8, 2020Updated 5 years ago
- Code to make it easier to write an NDIS network driver on Windows☆93Oct 1, 2023Updated 2 years ago
- Utility functions for building Windows kernel drivers in Rust☆21Nov 16, 2021Updated 4 years ago
- Provides commands to read from and write to arbitrary kernel-mode memory for users with the Administrator privilege. HVCI compatible. No …☆23Jun 16, 2024Updated last year
- Bypassing kernel patch protection runtime☆22Feb 19, 2023Updated 3 years ago
- https://key08.com/index.php/2021/10/19/1375.html☆71May 11, 2022Updated 3 years ago