This project provides a collection of Microsoft Windows kernel structures, unions and enumerations. Most of them are not officially documented and cannot be found in Windows Driver Kit (WDK) headers. The target audience of this site is driver developers and kernel researches.
☆243Nov 2, 2025Updated 6 months ago
Alternatives and similar repositories for vergilius-project
Users that are interested in vergilius-project are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Windows kernel PDB data parsed into YAML☆44Nov 2, 2025Updated 6 months ago
- A dll injector static library for Win x64 processes with handle elevation supported☆12Mar 28, 2021Updated 5 years ago
- Exports monitoring plugin for x64dbg☆22Mar 14, 2023Updated 3 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆639Jul 7, 2017Updated 8 years ago
- This project provides a collection of Microsoft Windows kernel structures, unions and enumerations. Most of them are not officially docum…☆29Nov 2, 2025Updated 6 months ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- A copy of my Mathematics and Computer Engineering B.Sc. thesis☆20Dec 8, 2020Updated 5 years ago
- Native API header files for the System Informer project.☆1,412Mar 26, 2026Updated last month
- Browse Page Tables on Windows (Page Table Viewer)☆239Apr 2, 2022Updated 4 years ago
- Time Travel Debugging IDA plugin☆596Jun 27, 2024Updated last year
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Apr 4, 2020Updated 6 years ago
- Lightweight WINAPI tracing with Pin☆27Aug 22, 2019Updated 6 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆147Feb 23, 2019Updated 7 years ago
- Bindings for Microsoft WinDBG TTD☆240Aug 5, 2023Updated 2 years ago
- LLVM based devirtualization PoC’s.☆21Dec 11, 2021Updated 4 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Easy Anti PatchGuard☆221Apr 9, 2021Updated 5 years ago
- C++ Exceptions in Windows Drivers☆220Dec 21, 2020Updated 5 years ago
- VirtualKD-Redux - A revival and modernization of VirtualKD☆964Jun 23, 2024Updated last year
- Monitoring and controlling kernel API calls with stealth hook using EPT☆1,377Jan 22, 2022Updated 4 years ago
- CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.☆334Mar 26, 2024Updated 2 years ago
- Create and use macros in IDA's CLIs☆66Dec 26, 2025Updated 4 months ago
- Reverse engineered API for Microsoft's Time Travel Debugger☆36Apr 18, 2024Updated 2 years ago
- IDA plugin and loader for UEFI firmware analysis and reverse engineering automation☆1,103May 6, 2026Updated 2 weeks ago
- ☆19Jan 12, 2020Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Hook system calls, context switches, page faults and more.☆2,649May 9, 2023Updated 3 years ago
- Bring Your Own Vulnerable Driver for PatchGuard & Driver Signature Enforcement☆16Apr 6, 2024Updated 2 years ago
- A POC for Windows Extension Host hooking☆24Jul 13, 2019Updated 6 years ago
- Hide codes/data in the kernel address space.☆188May 8, 2021Updated 5 years ago
- Analyze Windows x64 Kernel Memory Layout☆131Nov 19, 2020Updated 5 years ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆906Nov 21, 2019Updated 6 years ago
- Two PoC of accessing process virtual memory via NT Kernel☆22Jun 25, 2021Updated 4 years ago
- INF Studio for easier working with driver installation files☆39Nov 11, 2023Updated 2 years ago
- Simple Intel VT-x hypervisor☆363Dec 10, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Windows PDB parser for kernel-mode environment.☆114Jun 7, 2025Updated 11 months ago
- Bypasses for Windows kernel callbacks PatchGuard protection☆44Aug 15, 2021Updated 4 years ago
- HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate oper…☆381Jun 3, 2023Updated 2 years ago
- A library to develop kernel level Windows payloads for post HVCI era☆506May 18, 2021Updated 5 years ago
- Detect strange memory regions and DLLs☆191Jan 20, 2022Updated 4 years ago
- Hook all callbacks which are registered with LdrRegisterDllNotification☆98Apr 3, 2025Updated last year
- A DTrace on Windows Reimplementation☆373May 6, 2026Updated last week