Windows Kernel Security: Memory Integrity Verification with Disk Verification of ntoskrnl.exe
☆28Mar 23, 2025Updated last year
Alternatives and similar repositories for DetectNtoskrnlIntegrity
Users that are interested in DetectNtoskrnlIntegrity are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 基于Unicorn仿真PE模拟☆36May 3, 2026Updated 3 months ago
- Shows an example of how to implement VT-d/AMD-Vi on Windows☆185Sep 22, 2023Updated 2 years ago
- Toolkits for KPH (KSystemInformer) Dynamic Data .☆36Updated this week
- Emulate Drivers in RING3 with self context mapping or unicorn☆21Jan 1, 2025Updated last year
- 无痕hook探测☆50Aug 6, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- 对Windbg以Exdi模式下调试windows做一些修复☆21Aug 25, 2023Updated 3 years ago
- pg bypass for win10-win11 (learn from NP)☆17Oct 28, 2025Updated 10 months ago
- ☆28Aug 27, 2025Updated last year
- anti cheat drv open source☆19Apr 18, 2024Updated 2 years ago
- WinPools is an example of how Windows kernel big pool addresses can be leaking using NtQuerySystemInformation☆15Jun 23, 2019Updated 7 years ago
- ntos shit☆33Feb 15, 2024Updated 2 years ago
- MCP for ReClass.NET☆21Dec 31, 2025Updated 8 months ago
- WinDbg-Samples ExdiGdbSrv fork 修复了一部分Vmware调试的问题☆34Jul 10, 2023Updated 3 years ago
- ☆15Mar 4, 2021Updated 5 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- PE Sections Packer + Loader for Windows - Packs a DLL/EXE file and maps it into the loader (C/C++)☆16Oct 19, 2025Updated 10 months ago
- Executes Read/Write process memory with `NtQueryCompositionSurfaceStatistics`☆24Feb 10, 2024Updated 2 years ago
- IDA Pro plugin AntiXorstr☆160Feb 24, 2025Updated last year
- Basic C++20 Type Polymorphism && Type Translation☆18Aug 1, 2025Updated last year
- Windows kernel driver demonstrating kernel-to-usermode communication via shared memory sections☆117Apr 24, 2026Updated 4 months ago
- a monitoring windows driver calls kernel api tools☆139Jul 5, 2024Updated 2 years ago
- Using MMIO (Memory-Mapped I/O) to read TPM 2.0 public Endorsement Key.☆57May 29, 2024Updated 2 years ago
- NDC Oslo 2019 slides and demos☆33Nov 26, 2020Updated 5 years ago
- Windows kernel driver that detects hypervisors by probing SIDT/LIDT edge cases, paging/TLB behaviors, privilege transitions, and timing e…☆49Mar 3, 2026Updated 5 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Hijacking Hyper-V at Runtime with DDMA☆150Aug 13, 2025Updated last year
- Based on nt5src☆16Jul 12, 2023Updated 3 years ago
- 一个windows内核驱动分析框架,对内核所有导出函数进行挂钩监控☆78Nov 19, 2025Updated 9 months ago
- 一个用来做windows内核hook的框架☆188Apr 29, 2025Updated last year
- Synchronized Kernel Drawing for 24H2☆23Oct 9, 2025Updated 10 months ago
- Three different shellcode techniques on the Windows Kernel☆23Apr 8, 2025Updated last year
- MiniSDK☆10Nov 8, 2021Updated 4 years ago
- A Kernel Driver that can be used for a cheat or malware base to circumvent common cache & structure table checks. PsLoadedModuleList howe…☆222Apr 23, 2026Updated 4 months ago
- Windows hypervisor for Intel x64: defensive host hypervisor for Windows designed to mitigate kernel-level attacks including BYOVD, compat…☆273Jul 18, 2026Updated last month
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Cheat for my own game SecureGame which uses a bootkit to hyperjack Hyper-V in order to access VBS enclave's memory☆134Dec 8, 2024Updated last year
- A series of methods used to detect kernel shellcode for tencent game safe race 2024☆47Apr 22, 2024Updated 2 years ago
- nmi stackwalking + module verification☆173Dec 28, 2023Updated 2 years ago
- modern c++ wrapper around the microsoft portable executable file format☆40Nov 22, 2025Updated 9 months ago
- 大部分常见windows内核文件合集 感谢以下网站给出的版本号参考☆16Mar 4, 2026Updated 5 months ago
- kASLR bypass technique on Intel CPUs.☆36May 18, 2025Updated last year
- r/w virtual memory without attach☆235Oct 19, 2023Updated 2 years ago