microsoft / ebpf-for-windows-demoLinks
This repository contains the demo material built on top of ebpf-for-windows platform.
☆45Updated last year
Alternatives and similar repositories for ebpf-for-windows-demo
Users that are interested in ebpf-for-windows-demo are comparing it to the libraries listed below
Sorting:
- The Linux port of the Sysinternals Sysmon tool.☆276Updated 2 weeks ago
- XDP speeds up networking on Windows☆423Updated this week
- ☆97Updated this week
- Tooling to generate metadata for Win32 APIs in the Windows Driver Kit (WDK).☆104Updated 8 months ago
- TraceLogging events and tracing☆56Updated 4 months ago
- Supplemental open-source components for use in developing device drivers for Windows.☆65Updated 2 months ago
- eBPF-For-Windows extension to provide access to Windows kernel functionality☆31Updated this week
- The common parts of the Sysinternals Sysmon tool shared between the Windows and Linux versions.☆64Updated 8 months ago
- Simple example for getting started with eBPF for Windows☆47Updated 7 months ago
- A mini filter driver development framework allows you to develop minit filter driver with different features.☆60Updated 5 months ago
- Security testing tools for Windows sandboxing technologies☆175Updated 5 months ago
- Code to make it easier to write an NDIS network driver on Windows☆90Updated 2 years ago
- C++ library for interacting with the Windows Filtering Platform (WFP)☆97Updated 3 weeks ago
- A WinDbg extension to trace COM interactions☆121Updated last month
- OpenSSL engine for use with SymCrypt cryptographic library☆75Updated last week
- Yet another PE Viewer☆141Updated 2 years ago
- Windows Filtering Platform Explorer☆294Updated last month
- Networking related test tools for Windows. Relevant for anyone who is interested in Windows networking.☆29Updated last month
- ☆63Updated last year
- Trace events in real time sessions☆45Updated 2 years ago
- WinDbg installer/updater☆41Updated 2 years ago
- A collection of free miscellaneous Windows tools☆137Updated 2 months ago
- Sample code demonstrating use cases of the Microsoft.Windows.EventTracing.Processing.All nuget package.☆48Updated last month
- Red Canary's eBPF Sensor☆110Updated 3 months ago
- API Set Viewer☆89Updated 8 months ago
- A global injection and hooking example☆153Updated last year
- anti-ransomware file-system filter☆62Updated last year
- Launch Windows executables & COM servers in a sandboxed or elevated environment.☆48Updated 3 months ago
- Run executables in an AppContainer☆122Updated 6 years ago
- C++ library for low-level Windows development☆79Updated last year