Nero22k / Kernel-Programming-2023
Repository of different kernel drivers written while studying Windows NT Driver development
☆12Updated last year
Alternatives and similar repositories for Kernel-Programming-2023:
Users that are interested in Kernel-Programming-2023 are comparing it to the libraries listed below
- Header-only C++ library for producing PE files.☆32Updated last year
- Generate a PDB file given the old PDB file and an address mapping☆47Updated last month
- Elevate arbitrary MSR writes to kernel execution.☆34Updated last year
- Example of building an application verifer DLL☆46Updated 11 months ago
- A native Windows library for intercepting kernel-to-user transitions using instrumentation callbacks☆19Updated last year
- SetWinEventHook Sample☆47Updated last year
- Sample for Creating a new kernel object type and supporting API☆24Updated 8 months ago
- An example of how to use Microsoft Windows Warbird technology☆27Updated 2 years ago
- ☆25Updated 2 years ago
- WinHvShellcodeEmulator (WHSE) is a shellcode emulator leveraging the Windows Hypervisor Platform API☆22Updated 3 years ago
- An improved version of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆62Updated last month
- Application Verifier Dynamic Fault Injection☆37Updated last month
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆34Updated 7 months ago
- Exports monitoring plugin for x64dbg☆22Updated 2 years ago
- ☆15Updated 2 years ago
- Windows driver template, using C++20 & cmake & GithubActions☆22Updated 9 months ago
- ☆22Updated last year
- ☆18Updated 4 years ago
- break link between dll and it file on disk☆11Updated 8 months ago
- Load Dll into Kernel space☆38Updated 2 years ago
- Experiment to use sections as User/Kernelmode comm vector☆22Updated 2 years ago
- This master thesis project continuously collects and analyses Microsoft Windows kernel drivers using static and dynamic methods to help s…☆18Updated 6 months ago
- ☆20Updated 3 months ago
- x86-64 user mode emulation using Zydis☆46Updated 3 months ago
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆19Updated 6 months ago
- A compact tool for detecting AV/EDR hooks in default Windows libraries.☆31Updated 2 years ago
- Compileable POC of namazso's x64 return address spoofer.☆52Updated 4 years ago
- ☆7Updated last month
- Just an example of a well-known technique to detect memory tampering via Windows Working Sets.☆16Updated 3 years ago
- A driver to implement IOCTL hooking☆24Updated 3 years ago