Empyreal96 / nt-info-depotLinks
Webpage for a wealth of learning for many things Windows NT visit: https://empyreal96.github.io/nt-info-depot/index.html
☆102Updated 4 years ago
Alternatives and similar repositories for nt-info-depot
Users that are interested in nt-info-depot are comparing it to the libraries listed below
Sorting:
- PE Viewer☆182Updated 5 months ago
- x86 Real-Mode MS-DOS Emulator using Windows Hypervisor Platform☆138Updated 11 months ago
- Explore Kernel Objects on Windows☆217Updated 2 months ago
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆265Updated last week
- Advanced driver monitoring utility.☆212Updated 2 years ago
- Recon 2023 slides and code☆79Updated 2 years ago
- masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)☆124Updated last year
- Single header version of System Informer's phnt library.☆223Updated this week
- A DTrace on Windows Reimplementation☆348Updated 4 months ago
- A global injection and hooking example☆143Updated last year
- Yet another PE Viewer☆142Updated 2 years ago
- A small tool that allows to run WinAPI functions through command line parameters☆196Updated 2 years ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆144Updated 2 years ago
- Operating System Design Review: A systemic analysis of modern systems architecture☆314Updated 4 months ago
- ☆62Updated last year
- Samples for the book Windows Kernel Programming, 2nd edition☆342Updated 6 months ago
- Samples from my book Windows Native API programming☆68Updated last month
- View ETW Provider manifest☆498Updated 7 months ago
- Important notes and topics on my journey towards mastering Windows Internals☆395Updated last year
- Simple x86/x64 Assembler/Disassembler/Emulator☆184Updated 10 months ago
- Comparing, discussing, and bypassing various techniques for suspending and freezing processes on Windows.☆124Updated 3 years ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆152Updated last year
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆289Updated 8 months ago
- An x64dbg plugin which marks XFG call signatures as data☆77Updated 2 years ago
- WinVisor - A hypervisor-based emulator for Windows x64 user-mode executables using Windows Hypervisor Platform API☆581Updated 5 months ago
- Code from process of reversing Sysinternals Suite for educational purposes, with videos to associate them☆48Updated last year
- Simple windows API logger☆104Updated 5 years ago
- Tooling to generate metadata for Win32 APIs in the Windows Driver Kit (WDK).☆102Updated 4 months ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆139Updated 2 years ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆140Updated 6 years ago