not-matthias / kernel-build-rsLinks
Helper crate for building Windows Kernel Drivers.
☆24Updated 2 years ago
Alternatives and similar repositories for kernel-build-rs
Users that are interested in kernel-build-rs are comparing it to the libraries listed below
Sorting:
- silence file system monitoring components by hooking their minifilters☆58Updated last year
- research revolving the windows filtering platform callout mechanism☆35Updated last year
- Proof-of-concept game using VBS enclaves to protect itself from cheating☆45Updated last year
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆78Updated 3 years ago
- Create stealthy, inline, EPT-like hooks using SMAP and SMEP☆59Updated last year
- Windows PDB parser for kernel-mode environment.☆102Updated 5 months ago
- x86-64 virtualizing obfuscator written in Rust☆76Updated last year
- Documenting system information classes and their uses☆56Updated 4 years ago
- a windows kernel keylogger that works☆21Updated last year
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆78Updated 2 years ago
- A modern, mod independent open source cheat for Enemy Territory☆69Updated last week
- ☆95Updated last year
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆86Updated 5 years ago
- Elevate arbitrary MSR writes to kernel execution.☆38Updated 2 years ago
- How Meltdown and Spectre haunt Anti-Cheat: DVRT details☆22Updated last year
- ntoskrnl .data hooks for UM-KM communication☆50Updated last year
- POC Hook of nt!HvcallCodeVa☆53Updated 2 years ago
- Tool to dump UEFI runtime drivers implementing runtime services for Windows☆108Updated 4 years ago
- intel vt-x type 2 hypervisor☆60Updated 7 months ago
- Lightweight PDB symbol parser and resolver☆26Updated last year
- ☆25Updated 4 years ago
- Find out how to bypass HVCI (or not). My own research on Microsoft Warbird (specifically in clipsp.sys)☆71Updated 2 weeks ago
- A Windows PE packer for executables (x64) with LZMA compression and with full TLS (Thread Local Storage) support.☆89Updated 2 weeks ago
- ☆21Updated 2 years ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆129Updated 2 years ago
- x64 Windows implementation of virtual-address to physical-address translation☆43Updated 4 years ago
- A demonstration of hooking into the VMProtect-2 virtual machine☆22Updated 2 years ago
- Me fockin' pe protector☆45Updated 2 years ago
- filter driver to hide files and directories☆23Updated last year
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆167Updated 2 months ago