microsoft / ebpf-for-windows-demo
This repository contains the demo material built on top of ebpf-for-windows platform.
☆38Updated last month
Related projects ⓘ
Alternatives and complementary repositories for ebpf-for-windows-demo
- ☆73Updated this week
- Event Tracing for Windows tools and samples☆18Updated last year
- TraceLogging events and tracing☆45Updated 2 months ago
- Tool and library to convert ETW logs to JSON files☆86Updated 2 years ago
- OpenSSL engine for use with SymCrypt cryptographic library☆45Updated last week
- WinDbg installer/updater☆39Updated last year
- Tooling to generate metadata for Win32 APIs in the Windows Driver Kit (WDK).☆92Updated this week
- The common parts of the Sysinternals Sysmon tool shared between the Windows and Linux versions.☆60Updated this week
- The Linux port of the Sysinternals Sysmon tool.☆240Updated this week
- Security testing tools for Windows sandboxing technologies☆150Updated 9 months ago
- Sample code demonstrating use cases of the Microsoft.Windows.EventTracing.Processing.All nuget package.☆44Updated 7 months ago
- Code to make it easier to write an NDIS network driver on Windows☆73Updated last year
- XDP speeds up networking on Windows☆372Updated this week
- Supplemental open-source components for use in developing device drivers for Windows.☆50Updated this week
- A 'ping' equivalent tool for QUIC.☆101Updated this week
- Show Window Stations, Desktops and top level windows☆15Updated last year
- Project Mu - Feature Repo - MM Supervisor☆48Updated this week
- Crates for Microsoft Hypervisor ioctls and bindings☆32Updated this week
- Networking related test tools for Windows. Relevant for anyone who is interested in Windows networking.☆24Updated last week
- Rust version of the objdir tool☆12Updated 8 months ago
- VM firmware pkg for Project Mu☆34Updated this week
- Projected File System Sample (Object Manager Namespace)☆33Updated 8 months ago
- Yet another PE Viewer☆138Updated last year
- A WinDbg extension to trace COM interactions☆110Updated 9 months ago
- INF Studio for easier working with driver installation files☆36Updated last year
- This is a repo for small, useful scripts and extensions☆238Updated last year
- Cross platform, C abstraction layer for both user mode and kernel mode libraries☆21Updated this week
- C/C++ libraries for working with Linux Tracepoints and user_events☆40Updated 4 months ago
- ☆83Updated 4 months ago
- Launch Windows executables & COM servers in a sandboxed or elevated environment.☆41Updated 2 weeks ago