microsoft / ebpf-for-windows-demo
This repository contains the demo material built on top of ebpf-for-windows platform.
☆38Updated 6 months ago
Alternatives and similar repositories for ebpf-for-windows-demo:
Users that are interested in ebpf-for-windows-demo are comparing it to the libraries listed below
- ☆80Updated last week
- eBPF-For-Windows extension to provide access to Windows kernel functionality☆22Updated last week
- WinDbg installer/updater☆39Updated last year
- Event Tracing for Windows tools and samples☆22Updated 2 months ago
- Cross platform, C abstraction layer for both user mode and kernel mode libraries☆30Updated last week
- TraceLogging events and tracing☆48Updated 2 weeks ago
- Tooling to generate metadata for Win32 APIs in the Windows Driver Kit (WDK).☆98Updated last month
- The Linux port of the Sysinternals Sysmon tool.☆256Updated last month
- OpenSSL engine for use with SymCrypt cryptographic library☆56Updated this week
- Tool and library to convert ETW logs to JSON files☆88Updated 2 years ago
- Rust version of the objdir tool☆12Updated last year
- XDP speeds up networking on Windows☆391Updated this week
- A repository for I/O ring demos, use cases and performance testing on Windows☆42Updated 2 years ago
- The common parts of the Sysinternals Sysmon tool shared between the Windows and Linux versions.☆62Updated 2 months ago
- INF Studio for easier working with driver installation files☆36Updated last year
- Networking related test tools for Windows. Relevant for anyone who is interested in Windows networking.☆26Updated this week
- A template (and a sample) for writing tracers on Windows. Based on the Detours library.☆31Updated last year
- A PoC Windows Minifilter Driver in pure Rust (Don't use it in production)☆50Updated last year
- VM firmware pkg for Project Mu☆37Updated last month
- A WinDbg extension to trace COM interactions☆114Updated last year
- Projected File System Sample (Object Manager Namespace)☆33Updated last year
- A 'ping' equivalent tool for QUIC.☆114Updated this week
- C/C++ libraries for working with Linux Tracepoints and user_events☆41Updated this week
- This repro contains all the code and documentation for the MiniKvm project and the CH9329 controller☆18Updated last month
- A mini filter driver development framework allows you to develop minit filter driver with different features.☆41Updated 2 months ago
- Launch Windows executables & COM servers in a sandboxed or elevated environment.☆44Updated 4 months ago
- Crates for Microsoft Hypervisor ioctls and bindings☆34Updated last week
- Supplemental open-source components for use in developing device drivers for Windows.☆52Updated last week
- Yet another PE Viewer☆139Updated 2 years ago