windows syscall table from xp ~ 10 rs4
☆354Jun 8, 2018Updated 8 years ago
Alternatives and similar repositories for windows-syscall-table
Users that are interested in windows-syscall-table are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Examples of leaking Kernel Mode information from User Mode on Windows☆646Jul 7, 2017Updated 9 years ago
- Cross Platform Kernel Fuzzer Framework☆457Oct 11, 2018Updated 7 years ago
- A windbg extension, extracting token related contents☆41Dec 23, 2020Updated 5 years ago
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆750Jun 26, 2017Updated 9 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆439Aug 22, 2018Updated 7 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Windbg extension to find PatchGuard pages☆123Jun 24, 2014Updated 12 years ago
- ☆409Mar 1, 2017Updated 9 years ago
- WinDBG Anti-RootKit Extension☆642Jul 29, 2020Updated 6 years ago
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 9 years ago
- my public code☆166Jan 11, 2017Updated 9 years ago
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆482Apr 17, 2018Updated 8 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆264Jul 6, 2017Updated 9 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆421Jan 2, 2020Updated 6 years ago
- network filter driver that control network send speed, based on windows tdi framework.☆30Feb 16, 2024Updated 2 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Toolkit for Hyper-V security research☆154Mar 7, 2022Updated 4 years ago
- Universal PatchGuard and Driver Signature Enforcement Disable☆875Mar 29, 2019Updated 7 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆79Aug 12, 2015Updated 10 years ago
- ☆17Mar 3, 2016Updated 10 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆23May 31, 2017Updated 9 years ago
- A dirty IDAPython script to dump windows system call number/name pairs as JSON☆36Feb 13, 2017Updated 9 years ago
- x64 Kernel Hooks Detection☆21Jan 1, 2017Updated 9 years ago
- kernel exploitation helper class☆77Nov 26, 2016Updated 9 years ago
- ☆34Jul 28, 2018Updated 8 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- VMware Escape Exploit before VMware WorkStation 12.5.5☆910Nov 7, 2023Updated 2 years ago
- ☆17Oct 24, 2016Updated 9 years ago
- Research on Windows Kernel Executive Callback Objects☆315Feb 22, 2020Updated 6 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆174Dec 7, 2016Updated 9 years ago
- ☆34Sep 22, 2017Updated 8 years ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆420Dec 27, 2024Updated last year
- Helper library for x86 programs that runs under WOW64 layer on x64 versions of Microsoft Windows operating systems.☆1,012Jan 17, 2023Updated 3 years ago
- win10 pgContext dynamic dump (btc version)☆113Jan 15, 2020Updated 6 years ago
- pseudo-code to show how to disable patchguard with win10☆295Jan 13, 2018Updated 8 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PatchGuard Research☆305Oct 6, 2018Updated 7 years ago
- windows create process with a dll load first time via LdrHook☆31Oct 21, 2016Updated 9 years ago
- windows kernel vulnerability found by me☆87Aug 28, 2017Updated 8 years ago
- Some kernel fuzzing paper about windows and linux☆253Oct 9, 2017Updated 8 years ago
- kHypervisor is a lightweight bluepill-like nested VMM for Windows, it provides and emulating a basic function of Intel VT-x☆454Nov 29, 2021Updated 4 years ago
- Xenpwn is a toolkit for memory access tracing using hardware-assisted virtualization☆146Jul 22, 2016Updated 10 years ago
- Set of tools to analyze Windows sandboxes for exposed attack surface.☆2,327Nov 6, 2025Updated 9 months ago