repnz / simple-os
Simple Protected Mode Kernel for i386
☆16Updated 5 years ago
Alternatives and similar repositories for simple-os:
Users that are interested in simple-os are comparing it to the libraries listed below
- Various WinDbg extensions and scripts☆31Updated 6 years ago
- View handles and object for each object type☆61Updated 5 years ago
- Windows_OS_Internals_Curriculum_Resource_Kit-ACADEMIC☆23Updated 6 years ago
- NDC Oslo 2019 slides and demos☆32Updated 4 years ago
- A reflexive driver loader to bypass Windows DSE (featuring a custom PE loader)☆40Updated 6 years ago
- This is a simple driver with x64 inline assembly☆54Updated 4 years ago
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 2 years ago
- VMCS Auditor provides almost all of Intel's VMCS Layout checklist based on Bochs Emulator.☆32Updated 6 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆34Updated 3 years ago
- penter hook example and driver time recorder☆31Updated 7 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated 7 months ago
- A local copy of Alex Ionescu's seemingly abandoned native-nt-toolkit project containing knowledge inherited from the ReactOS project.☆54Updated 5 years ago
- Hook IDT vector 0xb2 to detect SCI in 64bit windows.☆34Updated 2 years ago
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- The bootloader for the latest versions of Windows NT, Windows 8 to Windows 11.☆20Updated 4 years ago
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆19Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- x86_64, PE32+, FAT32 bootloader☆25Updated 3 years ago
- A research project about Windows notify routines.☆35Updated 4 years ago
- Analyze PatchGuard☆54Updated 6 years ago
- Windows NT port of 'Main is usually a function. So then when is it not?'☆25Updated 11 months ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Updated 4 years ago
- Figuring out the cause of a handle downgrade☆24Updated 2 years ago
- Various reverse engineering work on Windows☆16Updated 4 years ago
- win32/x64 obfuscate framework☆32Updated 5 years ago
- A software driver that lets you log kernel-mode debug output into a file on Windows.☆98Updated 6 years ago
- Small memory leak PoC that is happening in IopGetDeviceInterfaces☆24Updated 4 years ago
- Windows Server 2K3 NT 5☆12Updated 3 years ago
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆42Updated 3 years ago