PoC demonstrating the usage of undocumented Process Instrumentation Callback for intercepting kernel-to-user transitions (Syscalls, APCs, Exceptions).
☆34Nov 28, 2025Updated 3 months ago
Alternatives and similar repositories for windows_instrumentation_callback
Users that are interested in windows_instrumentation_callback are comparing it to the libraries listed below
Sorting:
- ☆117Dec 11, 2025Updated 2 months ago
- Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in …☆55Dec 30, 2025Updated 2 months ago
- ☆56Feb 15, 2026Updated 3 weeks ago
- At least you can find anything you want here :)☆10Nov 25, 2023Updated 2 years ago
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆303Nov 20, 2025Updated 3 months ago
- A Windows Direct Syscall Library☆52Apr 23, 2025Updated 10 months ago
- WinDbg-ext-MCP bridges your favorite LLM client (like Cursor, Claude, or VS Code) with WinDbg, enabling real-time, AI assisted kernel deb…☆79Sep 10, 2025Updated 5 months ago
- Updated Scripts originally by Logitech, for Ogasai, made by DarkLinux.☆13Jan 28, 2024Updated 2 years ago
- POC for CVE-2023-29360☆12Aug 31, 2024Updated last year
- A Forge 'ghost client' written in C++☆11Jan 31, 2021Updated 5 years ago
- PIV模块☆13Jun 20, 2025Updated 8 months ago
- Lua Unlocker Source for Live WoW 7.x to 8.x☆20Apr 9, 2019Updated 6 years ago
- Tool for creating an animated GIF from a spritesheet of still images☆11Oct 23, 2025Updated 4 months ago
- Queries from the blog posts.☆15Oct 6, 2024Updated last year
- Cobalt Strike notifications via NTFY.☆15Sep 24, 2024Updated last year
- This is similar to GdrvLoader but it works on EAC (& BE but same for GdrvLoader) with included gdrv.sys (cert)☆32Dec 8, 2025Updated 3 months ago
- CoFiX Product Documentation☆12May 17, 2021Updated 4 years ago
- pubg_sdk☆11Jul 26, 2020Updated 5 years ago
- Source code of the MPQ archive plugin for Total Commander☆16Dec 4, 2024Updated last year
- A rust proof of concept to demonstrate registry overwriting via RegRestoreKey using the Offline Registry Library☆24Nov 13, 2025Updated 3 months ago
- This is the AV ("protection solution") used for my windows 10 rootkit main project. this includes the installer stager program, a service…☆13May 2, 2024Updated last year
- ☆10Jan 7, 2016Updated 10 years ago
- A wrapper around Ladislav Zezula's CASC Library for .NET☆10Oct 9, 2019Updated 6 years ago
- 010Editor-Crack version:13.0.1☆10Mar 18, 2024Updated last year
- OpenBO2 - An open-sourced version of Black Ops 2☆12Nov 2, 2021Updated 4 years ago
- Various dll hollowing techniques☆10Feb 29, 2024Updated 2 years ago
- MSI creator for exe setup/installer☆11Jun 27, 2023Updated 2 years ago
- Custom CoD4-CompileTools based on the original tools.☆10Apr 5, 2021Updated 4 years ago
- Automatic vtable detection, inheritance analysis, and function override tracking for reverse engineering compiled C++ binaries. Supports …☆124Feb 13, 2026Updated 3 weeks ago
- ☆12May 17, 2023Updated 2 years ago
- POC about how to detect windows kernel debug by pool tag.☆13Nov 29, 2023Updated 2 years ago
- Process doppelganging POC using direct system calls, PPID spoofing and dropbox as an external delivery channel for the payload.☆16Jan 7, 2021Updated 5 years ago
- Blocking Windows EDR agents by registering an own IPC-object in the Object Manager’s namespace (CVE-2023-3280, CVE-2024-5909, CVE-2024-20…☆35Feb 27, 2025Updated last year
- IW Engine for Call of Duty® games.☆14Apr 27, 2022Updated 3 years ago
- ☆12Jul 5, 2024Updated last year
- FourDeltaOne Source☆11Apr 20, 2019Updated 6 years ago
- Repository of different kernel drivers written while studying Windows NT Driver development☆12Apr 14, 2024Updated last year
- ☆14Jan 15, 2023Updated 3 years ago
- The Fluent Design XAML theme editor.☆11Jun 29, 2023Updated 2 years ago