Windows Kernel Programming
☆136May 11, 2020Updated 6 years ago
Alternatives and similar repositories for basic-windows-kernel-programming
Users that are interested in basic-windows-kernel-programming are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆32Jul 9, 2021Updated 5 years ago
- Some drivers I've written while solving exercises from Practical Reverse Engineering☆15Jan 9, 2022Updated 4 years ago
- Windows System Programming Experiments☆222Jun 13, 2022Updated 4 years ago
- Easy Anti PatchGuard☆219Apr 9, 2021Updated 5 years ago
- Tools made for my Hyper-V blog series @ https://foxhex0ne.blogspot.com/☆57Jun 21, 2020Updated 6 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- LLVM based devirtualization PoC’s.☆20Dec 11, 2021Updated 4 years ago
- A kernel mode Windows rootkit in development.☆47Dec 31, 2021Updated 4 years ago
- A simple password-based PE encryptor for Windows 32-bit executables.☆50Jan 9, 2025Updated last year
- My notes while studying Windows internals☆489Jul 6, 2026Updated 2 weeks ago
- File system minifilter driver for Windows to block symbolic link attacks.☆53Dec 16, 2020Updated 5 years ago
- Hijack NotifyRoutine for a kernelmode thread☆38Jun 4, 2022Updated 4 years ago
- Anti-Analysis technique, trick the debugger by Hiding events from it.☆19Sep 6, 2021Updated 4 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Aug 11, 2023Updated 2 years ago
- Various shellcodes☆12Sep 1, 2020Updated 5 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆51Jan 15, 2021Updated 5 years ago
- Virtual Tagger Plugin is a Cutter plugin that significantly improves handling and analysis of vtables and virtual functions☆16Mar 23, 2023Updated 3 years ago
- using gpuz to load driver☆35Mar 14, 2019Updated 7 years ago
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆30May 18, 2022Updated 4 years ago
- neat way to detect memory read using nt layer function.☆13Aug 4, 2023Updated 2 years ago
- clearing traces of a loaded driver☆48Jul 2, 2022Updated 4 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆67Apr 4, 2020Updated 6 years ago
- VT-based PCI device monitor (SPI)☆158Oct 29, 2020Updated 5 years ago
- Custom implementation of DbgHelp's MiniDumpWriteDump function. Uses static syscalls to replace low-level functions like NtReadVirtualMemo…☆128Jan 18, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆108Apr 24, 2020Updated 6 years ago
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆256Jul 5, 2022Updated 4 years ago
- Research on Windows Kernel Executive Callback Objects☆317Feb 22, 2020Updated 6 years ago
- ☆16Mar 1, 2019Updated 7 years ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆265Sep 1, 2022Updated 3 years ago
- a minimalistic windows hypervisor for amd processors☆152Jun 30, 2022Updated 4 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Nov 22, 2021Updated 4 years ago
- This is a collection of interesting codes about Windows Process creation.☆239Jan 12, 2024Updated 2 years ago
- ☆166Sep 18, 2021Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆211Jul 2, 2020Updated 6 years ago
- .lib file for linking against the NT CRT☆19Mar 18, 2022Updated 4 years ago
- C++ STL in the Windows Kernel with C++ Exception Support☆441Aug 16, 2023Updated 2 years ago
- windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking☆54Aug 28, 2022Updated 3 years ago
- hooking KiUserApcDispatcher☆26Apr 3, 2017Updated 9 years ago
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆74Nov 12, 2019Updated 6 years ago
- ☆31Jan 12, 2022Updated 4 years ago