Standalone tool to explore the security model of Windows and its NT kernel. Use it to introspect privilege assignments and access right assignments, enumerate attack surfaces from the point of view of a sandboxed process, etc.
☆33May 21, 2019Updated 7 years ago
Alternatives and similar repositories for ntsec
Users that are interested in ntsec are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Lists all visible objects in the Windows kernel object namespace, a command-line WinObj☆16May 27, 2018Updated 8 years ago
- A test project to try the new win32k.sys system call filtering mitigation in Windows 10☆16Mar 17, 2019Updated 7 years ago
- Static library and headers for linking your software with ntdll.dll☆38Dec 16, 2019Updated 6 years ago
- Source code on the 1.44MB 3.5 floppy accompanying the Windows NT File System Internals book.☆20Jul 31, 2019Updated 6 years ago
- DNS over HTTPS Servers☆13Nov 19, 2018Updated 7 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Tools for building TIL for IDA SDK & exporting them to python wrapper☆21Jun 26, 2023Updated 3 years ago
- Collection of dockerfiles to build containers☆13Mar 19, 2018Updated 8 years ago
- Lists capabilities used by processes on your system as they are requested, to assist in the task of creating custom hardened profiles for…☆13Jul 4, 2026Updated 3 weeks ago
- Convert IDA Type Library `*.til` to Compilable C Header!☆19Mar 9, 2023Updated 3 years ago
- Window Executable file Function tracer using Debugging API☆41Sep 26, 2019Updated 6 years ago
- MircoSoft Detours 4.0.1,MIT License,Support X86,X64,ARM,IA64☆12Apr 23, 2018Updated 8 years ago
- From 2011: Quickly search for files in NTFS volumes parsing the Master File Table (MFT). A decent amount of how NTFS and MFT work was pai…☆28Oct 14, 2019Updated 6 years ago
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆30May 18, 2022Updated 4 years ago
- Simple program for static hooking dynamic libraries in executable application☆24Jan 15, 2014Updated 12 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Getting windows operating system version information by 3 ways. using APIs,GetVersionEx, VerifyVersionInfo☆14Apr 9, 2015Updated 11 years ago
- A sample bot for Cobalt Strike 3☆22Jun 11, 2016Updated 10 years ago
- r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems☆27Jul 27, 2018Updated 7 years ago
- Windows OS Internals Curriculum Resource Kit ACADEMIC☆19Nov 4, 2017Updated 8 years ago
- 常用代码类☆13May 31, 2014Updated 12 years ago
- Confirms the capability of Hardware-Accelerated Virtualization Technology.☆10Feb 26, 2026Updated 4 months ago
- NTrace -- a function boundary tracing tool for Windows user and kernel mode☆22Nov 1, 2013Updated 12 years ago
- Modifies the code of the RtlUserThreadStart callback and reads the arguments passed to it. Then it changes the initial execution argument…☆16Mar 4, 2018Updated 8 years ago
- ☆10Aug 9, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- ☆84Dec 3, 2017Updated 8 years ago
- C++ WMI class library☆56Jun 7, 2026Updated last month
- UI application that can compare PE images in memory or in raw PE file☆19Feb 17, 2014Updated 12 years ago
- r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems☆28Aug 6, 2018Updated 7 years ago
- ☆12Feb 19, 2017Updated 9 years ago
- Go module that allows you to authenticate to Azure with a well known client ID using interactive logon and grab the token☆27Dec 1, 2022Updated 3 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆33Oct 7, 2020Updated 5 years ago
- Créateur de MMORPG réalisé en VB6.☆20Aug 9, 2012Updated 13 years ago
- High-level library for executable binary file analysis☆16Feb 13, 2017Updated 9 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Dispar - Cross-platform Disassemling binary Parser☆20Nov 21, 2021Updated 4 years ago
- Demonstrates how to populate SID History on security principals migrated cross AD forest from PowerShell session☆15Feb 12, 2026Updated 5 months ago
- Standalone program to download PDB Symbol files for debugging without WDK☆83Jun 20, 2019Updated 7 years ago
- Allows you to add breakpoints from IDA (from the graph/text view) to WinDbg easily☆14Oct 10, 2018Updated 7 years ago
- ☆15Dec 4, 2016Updated 9 years ago
- A collection of tools to enumerate and analyse Windows DACLs☆111Jul 11, 2015Updated 11 years ago
- ☆13May 9, 2017Updated 9 years ago