gerhart01 / Hyper-V-Internals
Internals information about Hyper-V
☆661Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for Hyper-V-Internals
- My notes while studying Windows internals☆399Updated this week
- Examples of leaking Kernel Mode information from User Mode on Windows☆581Updated 7 years ago
- My personal cheat sheet for using WinDbg for kernel debugging☆387Updated last month
- Time Travel Debugging IDA plugin☆553Updated 4 months ago
- Windows NT x64 syscall fuzzer☆589Updated last year
- The research UEFI hypervisor that supports booting an operating system.☆552Updated 3 months ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆389Updated 4 years ago
- Simple x86-64 VT-x Hypervisor with EPT Hooking☆846Updated last year
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆548Updated last month
- A Pin Tool for tracing API calls etc☆1,301Updated 3 weeks ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆326Updated 3 weeks ago
- Research on Windows Kernel Executive Callback Objects☆278Updated 4 years ago
- A DTrace on Windows Reimplementation☆328Updated 3 weeks ago
- Useful scripts for WinDbg using the debugger data model☆389Updated 7 months ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆845Updated 4 years ago
- A library to develop kernel level Windows payloads for post HVCI era☆366Updated 3 years ago
- The Windows Library for Intel Process Trace (WinIPT) is a project that leverages the new Intel Processor Trace functionality exposed by W…☆365Updated last year
- Toy scripts for playing with WinDbg JS API☆220Updated 4 months ago
- XNTSV program for detailed viewing of system structures for Windows.☆446Updated this week
- DEFCON 27 workshop - Modern Debugging with WinDbg Preview☆708Updated 2 weeks ago
- Official x64dbg plugin for IDA Pro.☆461Updated last month
- The Windows Kernel Programming book samples☆611Updated last year
- The Grimoire Hypervisor solution for x86 Processors with experimental nested virtualization support. Remastering with Rust in progress.☆472Updated last week
- An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in gen…☆750Updated 9 months ago
- Lightweight type-1 hypervisor offering a foundation for building advanced security-focused functionality.☆240Updated 2 years ago
- A bare minimum hypervisor on AMD and Intel processors for learners.☆192Updated this week
- A minimalistic educational hypervisor for Windows on AMD processors.☆333Updated 11 months ago
- Dump of win32k POCs for bugs I've found☆370Updated 2 years ago
- Canadian Furious Beaver is a ProcMon-style tool designed only for capturing IRPs sent to any Windows driver.☆310Updated 7 months ago
- CVE-2020-15368, aka "How to exploit a vulnerable driver"☆440Updated 2 years ago