windows syscall table from xp ~ 10 rs4
☆355Jun 8, 2018Updated 8 years ago
Alternatives and similar repositories for windows-syscall-table
Users that are interested in windows-syscall-table are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Examples of leaking Kernel Mode information from User Mode on Windows☆645Jul 7, 2017Updated 9 years ago
- Cross Platform Kernel Fuzzer Framework☆457Oct 11, 2018Updated 7 years ago
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆750Jun 26, 2017Updated 9 years ago
- A windbg extension, extracting token related contents☆41Dec 23, 2020Updated 5 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆438Aug 22, 2018Updated 7 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Windbg extension to find PatchGuard pages☆123Jun 24, 2014Updated 12 years ago
- ☆408Mar 1, 2017Updated 9 years ago
- WinDBG Anti-RootKit Extension☆642Jul 29, 2020Updated 5 years ago
- my public code☆166Jan 11, 2017Updated 9 years ago
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 9 years ago
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆481Apr 17, 2018Updated 8 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆265Jul 6, 2017Updated 9 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆420Jan 2, 2020Updated 6 years ago
- network filter driver that control network send speed, based on windows tdi framework.☆30Feb 16, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Toolkit for Hyper-V security research☆155Mar 7, 2022Updated 4 years ago
- Universal PatchGuard and Driver Signature Enforcement Disable☆875Mar 29, 2019Updated 7 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆79Aug 12, 2015Updated 10 years ago
- ☆17Mar 3, 2016Updated 10 years ago
- ☆34Sep 22, 2017Updated 8 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆23May 31, 2017Updated 9 years ago
- A dirty IDAPython script to dump windows system call number/name pairs as JSON☆36Feb 13, 2017Updated 9 years ago
- x64 Kernel Hooks Detection☆21Jan 1, 2017Updated 9 years ago
- kernel exploitation helper class☆77Nov 26, 2016Updated 9 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- VMware Escape Exploit before VMware WorkStation 12.5.5☆909Nov 7, 2023Updated 2 years ago
- ☆17Oct 24, 2016Updated 9 years ago
- windows create process with a dll load first time via LdrHook☆31Oct 21, 2016Updated 9 years ago
- Research on Windows Kernel Executive Callback Objects☆317Feb 22, 2020Updated 6 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆174Dec 7, 2016Updated 9 years ago
- Helper library for x86 programs that runs under WOW64 layer on x64 versions of Microsoft Windows operating systems.☆1,010Jan 17, 2023Updated 3 years ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆418Dec 27, 2024Updated last year
- PatchGuard Research☆305Oct 6, 2018Updated 7 years ago
- win10 pgContext dynamic dump (btc version)☆115Jan 15, 2020Updated 6 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- pseudo-code to show how to disable patchguard with win10☆296Jan 13, 2018Updated 8 years ago
- windows kernel vulnerability found by me☆88Aug 28, 2017Updated 8 years ago
- Some kernel fuzzing paper about windows and linux☆255Oct 9, 2017Updated 8 years ago
- VMAttack PlugIn for IDA Pro☆884Nov 30, 2017Updated 8 years ago
- Set of tools to analyze Windows sandboxes for exposed attack surface.☆2,303Nov 6, 2025Updated 8 months ago
- kHypervisor is a lightweight bluepill-like nested VMM for Windows, it provides and emulating a basic function of Intel VT-x☆453Nov 29, 2021Updated 4 years ago
- Xenpwn is a toolkit for memory access tracing using hardware-assisted virtualization☆146Jul 22, 2016Updated 9 years ago