mytechnotalent / windows-kernel-debuggingLinks
A guide to get you started with Windows Kernel Debugging walking you through the complete setup and usage of WinDbg to trace Windows process creation at the kernel level, from boot to PspCreateProcess, using VMware Workstation.
☆24Updated last month
Alternatives and similar repositories for windows-kernel-debugging
Users that are interested in windows-kernel-debugging are comparing it to the libraries listed below
Sorting:
- ☆52Updated 4 months ago
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆78Updated 6 months ago
- Proof-of-concept kernel driver that hijacks the Windows kernel extension table mechanism to preserve process notify callbacks even when a…☆92Updated 5 months ago
- ☆58Updated 2 months ago
- Intel 64/Windows low-level experiments☆62Updated 4 months ago
- ☆88Updated last year
- Exploiting the KsecDD Windows driver through Server Silos☆75Updated last year
- Win32 keylogger that supports all (non-ime using) languages correctly☆54Updated 2 years ago
- A few examples of how to trap virtual memory access on Windows.☆38Updated last year
- In-memory hiding technique☆62Updated 11 months ago
- shell code example☆67Updated 2 weeks ago
- Easy encrypt/decrypt data with TPM☆25Updated last year
- Hooking KPRCB IdlePreselect function to gain execution inside PID 0.☆73Updated 8 months ago
- Dll injection through code page id modification in registry. Based on jonas lykk research☆17Updated 3 years ago
- ☆42Updated 10 months ago
- List the ETW provider(s) in the registration table of a process.☆63Updated 2 years ago
- Zero-dependency MCP server implementation.☆55Updated 3 weeks ago
- A C++/Asm template for PIC/EXE/DLL malware☆24Updated 4 months ago
- Callstack spoofing using a VEH because VEH all the things.☆23Updated 9 months ago
- Example of building an application verifer DLL☆50Updated last year
- Proof of concepts demonstrating some aspects of the Windows kernel shadow stack mitigation.☆53Updated 6 months ago
- Minimalistic HTTP(S) client for the NT kernel☆60Updated 3 weeks ago
- Reimplementation of the KExecDD DSE bypass technique.☆55Updated last year
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆42Updated last year
- REcon 2024 Repo, slides for talk "GOP Complex: Image parsing bugs, EBC polymorphic engines and the Deus ex machina of UEFI exploit dev""☆14Updated 8 months ago
- Virtual Trust Level (VTL 1) secure call tracing☆83Updated 4 months ago
- Finding Truth in the Shadows☆120Updated 2 years ago
- Slaying multi-language LLVM IR with obfuscation passes to achieve JIT execution☆126Updated this week
- ☆98Updated last year
- Implementing an early exception handler for hooking and threadless process injection without relying on VEH or SEH☆133Updated 3 months ago