therealdreg / masm32-kernel-programmingLinks
masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)
☆124Updated last year
Alternatives and similar repositories for masm32-kernel-programming
Users that are interested in masm32-kernel-programming are comparing it to the libraries listed below
Sorting:
- Recon 2023 slides and code☆79Updated last year
- Advanced driver monitoring utility.☆210Updated 2 years ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆143Updated 2 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆245Updated 2 years ago
- Admin to Kernel code execution using the KSecDD driver☆250Updated last year
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆151Updated last year
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆227Updated 2 years ago
- Single header version of System Informer's phnt library.☆221Updated last week
- Process Injection using Thread Name☆272Updated last month
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆142Updated 9 months ago
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆115Updated 10 months ago
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆153Updated 2 months ago
- Abusing exceptions for code execution.☆111Updated 2 years ago
- Reverse engineering winapi function loadlibrary.☆194Updated 2 years ago
- Exploitable drivers, you know what I mean☆132Updated last year
- Static Binary Instrumentation tool for Windows x64 executables☆203Updated 3 weeks ago
- x86/x64 Ring 0/-2 System Freezer/Debugger☆116Updated last week
- Implementation of Advanced Module Stomping and Heap/Stack Encryption☆216Updated last year
- Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)☆105Updated 2 years ago
- Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.☆231Updated last year
- ☆139Updated 2 weeks ago
- ☆114Updated 3 weeks ago
- LLVM plugin to transparently apply stack spoofing and indirect syscalls to Windows x64 native calls at compile time.☆289Updated last year
- PoC Anti-Rootkit/Anti-Cheat Driver.☆196Updated last month
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆154Updated 2 years ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆88Updated 2 years ago
- ☆143Updated last year
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆202Updated 7 months ago
- Dont Call Me Back - Dynamic kernel callback resolver. Scan kernel callbacks in your system in a matter of seconds!☆232Updated 10 months ago
- A tutorial on how to write a packer for Windows!☆275Updated last year