microsoft / ntosebpfextLinks
eBPF-For-Windows extension to provide access to Windows kernel functionality
☆31Updated last week
Alternatives and similar repositories for ntosebpfext
Users that are interested in ntosebpfext are comparing it to the libraries listed below
Sorting:
- ☆91Updated 2 weeks ago
- Demonstrate the behavior of the tunnel cache on Windows☆10Updated 6 years ago
- INF Studio for easier working with driver installation files☆39Updated last year
- Supports code generation and SDK functionality for VBS enclaves.☆16Updated last week
- Hyper-V VMBusPipe Reversing☆19Updated 4 years ago
- Show Window Stations, Desktops and top level windows☆16Updated 2 years ago
- Diff tool for comparing symbols in PDB files☆83Updated 5 years ago
- Hyper-V sockets☆29Updated 8 years ago
- A console debugger using DbgX and Terminal.Gui☆30Updated 2 years ago
- VM firmware pkg for Project Mu☆41Updated 3 weeks ago
- My commands and scripts extending WinDbg☆41Updated 5 months ago
- PICO processes toolbox, playground for PICO processes research☆74Updated 7 years ago
- Rust unsafe bindings for Vid API (Hyper-V)☆20Updated 6 months ago
- This repository contains the demo material built on top of ebpf-for-windows platform.☆45Updated 11 months ago
- The common parts of the Sysinternals Sysmon tool shared between the Windows and Linux versions.☆64Updated 7 months ago
- Public issue and feedback tracking for WinDbg Preview.☆56Updated 3 months ago
- Utility functions for building Windows kernel drivers in Rust☆21Updated 3 years ago
- Tools and documents for working with Microsoft PDB files, in Rust☆41Updated last month
- WinDbg installer/updater☆41Updated 2 years ago
- A framework for Windows KMDF-based upper filter drivers to behave as bus filters. You don't need to write WDM drivers any more!☆24Updated last month
- Projected File System Sample (Object Manager Namespace)☆37Updated last year
- OpenHCL Linux Kernel☆15Updated last week
- A hooking library with a MinHook-like API and a Detours-like implementation, with support for the x86, x64, and ARM64 platforms☆26Updated last month
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated 2 years ago
- Run executables in an AppContainer☆122Updated 6 years ago
- Network Adapter Class Extension to WDF (NetAdapter Cx) makes it easy to write high quality and high speed drivers for Network Interface C…☆62Updated 2 years ago
- Runtime smm module loader☆35Updated 2 years ago
- View handles and object for each object type☆64Updated 6 years ago
- EWDK C++ toolchain for bazel☆11Updated 2 months ago
- Full reversing of the Microsoft Auxiliary Windows API Library and ported to C☆24Updated 8 months ago