microsoft / ebpf-for-windows-demoLinks
This repository contains the demo material built on top of ebpf-for-windows platform.
☆45Updated last year
Alternatives and similar repositories for ebpf-for-windows-demo
Users that are interested in ebpf-for-windows-demo are comparing it to the libraries listed below
Sorting:
- The Linux port of the Sysinternals Sysmon tool.☆277Updated last month
- ☆98Updated this week
- eBPF-For-Windows extension to provide access to Windows kernel functionality☆31Updated this week
- Tooling to generate metadata for Win32 APIs in the Windows Driver Kit (WDK).☆104Updated 8 months ago
- XDP speeds up networking on Windows☆430Updated this week
- Simple example for getting started with eBPF for Windows☆48Updated 8 months ago
- TraceLogging events and tracing☆56Updated 5 months ago
- Yet another PE Viewer☆141Updated 2 years ago
- A mini filter driver development framework allows you to develop minit filter driver with different features.☆61Updated 6 months ago
- Code to make it easier to write an NDIS network driver on Windows☆89Updated 2 years ago
- API Set Viewer☆90Updated 9 months ago
- The common parts of the Sysinternals Sysmon tool shared between the Windows and Linux versions.☆64Updated 9 months ago
- WinDbg installer/updater☆41Updated 2 years ago
- VM firmware pkg for Project Mu☆43Updated 3 weeks ago
- Security testing tools for Windows sandboxing technologies☆173Updated 5 months ago
- Supplemental open-source components for use in developing device drivers for Windows.☆67Updated 2 months ago
- Trace events in real time sessions☆44Updated 2 years ago
- A WinDbg extension to trace COM interactions☆121Updated 2 months ago
- Windows Filtering Platform Explorer☆299Updated 2 months ago
- Projected File System Sample (Object Manager Namespace)☆37Updated last year
- Work with eBPF on Windows☆40Updated 8 months ago
- Sample code demonstrating use cases of the Microsoft.Windows.EventTracing.Processing.All nuget package.☆48Updated last month
- ☆63Updated last year
- Document ETW providers☆256Updated 5 years ago
- Show Window Stations, Desktops and top level windows☆17Updated 2 years ago
- Download pdbs from symbol servers and cache locally, parse symbol paths from env vars☆20Updated 7 months ago
- Named pipe I/O ETW provider for Windows☆71Updated 5 years ago
- INF Studio for easier working with driver installation files☆38Updated last year
- Red Canary's eBPF Sensor☆111Updated 4 months ago
- A cross-platform library for verifying Authenticode signatures☆158Updated 2 months ago