mtth-bfft / win32k-mitigationView external linksLinks
A test project to try the new win32k.sys system call filtering mitigation in Windows 10
☆15Mar 17, 2019Updated 6 years ago
Alternatives and similar repositories for win32k-mitigation
Users that are interested in win32k-mitigation are comparing it to the libraries listed below
Sorting:
- Standalone tool to explore the security model of Windows and its NT kernel. Use it to introspect privilege assignments and access right a…☆33May 21, 2019Updated 6 years ago
- Hyper-V Fuzzer using hAFL2☆11May 10, 2022Updated 3 years ago
- Source code on the 1.44MB 3.5 floppy accompanying the Windows NT File System Internals book.☆20Jul 31, 2019Updated 6 years ago
- Static library and headers for linking your software with ntdll.dll☆38Dec 16, 2019Updated 6 years ago
- Forked from Akayan. Windows Kernel Exploitation. Static & dynamic analysis, exploits & vuln reasearch. Mitigations bypass's, genric bug-c…☆16Oct 29, 2024Updated last year
- ssdt hook 框架的简单实现☆14Jun 9, 2016Updated 9 years ago
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆22Sep 4, 2023Updated 2 years ago
- Analysis of syscall sequence pattern from exploit codes for advanced system call sequence filtering for enhanced container security☆16May 21, 2023Updated 2 years ago
- From 2011: Quickly search for files in NTFS volumes parsing the Master File Table (MFT). A decent amount of how NTFS and MFT work was pai…☆29Oct 14, 2019Updated 6 years ago
- An open source library for operating the Windows Overlay Filter driver.☆22Jan 16, 2019Updated 7 years ago
- ntos shit☆30Feb 15, 2024Updated 2 years ago
- kernel pool windbg extension☆83Jul 23, 2015Updated 10 years ago
- ☆21May 24, 2022Updated 3 years ago
- ☆11Dec 21, 2020Updated 5 years ago
- A exe loader that can load NScript evaluation engine of Windows Defender/Microsft Security Essential. You can fuzz NScript by using this.…☆28Oct 18, 2017Updated 8 years ago
- Portable Executable launcher for Windows NT bypassing loader☆74Sep 4, 2025Updated 5 months ago
- ☆33Dec 22, 2020Updated 5 years ago
- Sample libraries to be used with IAT Patcher☆36Oct 1, 2022Updated 3 years ago
- Open-source EDR kernel-component for system monitoring and DLL injection☆33Nov 14, 2020Updated 5 years ago
- ☆29Sep 18, 2015Updated 10 years ago
- 基于二维数据,支持排序,支持序列化/反序列化的guava table实现☆10Feb 15, 2017Updated 8 years ago
- Slides from various conference talks☆37May 30, 2023Updated 2 years ago
- 大表哥的Syscall-Monitor☆34Jul 18, 2019Updated 6 years ago
- NTFS parser, plus linking capabilites between MFT LogFile and UsnJrnl☆38Aug 23, 2016Updated 9 years ago
- Windows x64 Process Scanner to detect application compatability shims☆37Oct 17, 2018Updated 7 years ago
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆99Jul 7, 2020Updated 5 years ago
- Fractals using Python 3☆10Apr 9, 2021Updated 4 years ago
- ☆49Jun 30, 2020Updated 5 years ago
- The Network project is a C++ encapsulation of WinSock2 to form a lightweight network library; The Graphics project is a C++ encapsulation…☆13Oct 31, 2017Updated 8 years ago
- Visual Studio Code extension for PowerShell Universal☆15Sep 26, 2025Updated 4 months ago
- ☆53Dec 21, 2022Updated 3 years ago
- It's a handy tool to help you analyze malware. You can use this tool to query your malware samples using different hashes or find all oth…☆20Jul 22, 2025Updated 6 months ago
- Source code for TMS WEB Core 2nd Edition☆12Apr 16, 2024Updated last year
- Cuckoo Sandbox report parser into ransomware classifier☆11Feb 14, 2019Updated 7 years ago
- A Windows Memory driver for game hacking purposes. Supports manual mapping with BlackBone and PastDSE.☆43Apr 23, 2021Updated 4 years ago
- Ransomware dataset, containing dynamic behaviour of more than 60 distinct ransomware families.☆10Aug 29, 2022Updated 3 years ago
- MFT Fast Transcoder is a fast forensic tool to analyze MFT of NTFS partitions.☆12Feb 27, 2023Updated 2 years ago
- ☆11Apr 30, 2021Updated 4 years ago
- ☆11Oct 17, 2024Updated last year