Rhydon1337 / windows-kernel-developmentLinks
Setup for windows kernel development (development, debugging automation and compiling)
☆17Updated 5 years ago
Alternatives and similar repositories for windows-kernel-development
Users that are interested in windows-kernel-development are comparing it to the libraries listed below
Sorting:
- Hiding SSH public keys in SSH server using a kernel agent☆23Updated 5 years ago
- Force kill a process using windows kernel driver☆25Updated 4 years ago
- Linux kernel filesystem filter driver☆22Updated 5 years ago
- Protect a file from being deleted using windows kernel file system minifilter driver☆40Updated 4 years ago
- a windows kernel keylogger that works☆20Updated last year
- Protect a process from code injection, termination and hooking☆49Updated 4 years ago
- Process hiding library☆19Updated 5 years ago
- silence file system monitoring components by hooking their minifilters☆59Updated 2 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆27Updated 4 years ago
- filter driver to hide files and directories☆25Updated last year
- A demonstration of hooking into the VMProtect-2 virtual machine☆23Updated 2 years ago
- ☆39Updated 2 years ago
- Record & prevent file deletion in kernel mode☆46Updated 5 years ago
- Force a file delete using a windows kernel driver☆72Updated 3 years ago
- windows rootkit☆60Updated last year
- Hijack NotifyRoutine for a kernelmode thread☆41Updated 3 years ago
- Some drivers I've written while solving exercises from Practical Reverse Engineering☆15Updated 4 years ago
- Rust program for interfacing with the gigabyte driver to gain access to powerful primitives such as arbitrary kernel memcpy.☆17Updated 3 years ago
- A poc that abuses Enclave☆40Updated 3 years ago
- Bypassing kernel patch protection runtime☆21Updated 2 years ago
- ☆59Updated 3 years ago
- Shh0ya Kernel Hook Driver☆24Updated 5 years ago
- Learn Winapi in this Repo with examples, to understand its abstraction in reverse engineering for Windows.☆11Updated 3 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Updated 4 years ago
- ☆34Updated 2 years ago
- SoulExtraction is a windows driver library for extracting cert information in windows drivers☆25Updated 2 years ago
- ☆16Updated 4 years ago
- POC Hook of nt!HvcallCodeVa☆54Updated 2 years ago
- Single header library to simplify the usage of direct syscalls. x64/x86☆14Updated 2 years ago
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆26Updated 6 years ago