tpn / windows-nt-file-system-internals-bookLinks
Source code on the 1.44MB 3.5 floppy accompanying the Windows NT File System Internals book.
☆18Updated 6 years ago
Alternatives and similar repositories for windows-nt-file-system-internals-book
Users that are interested in windows-nt-file-system-internals-book are comparing it to the libraries listed below
Sorting:
- Writing WDF Drivers I: Core Concepts Lab Material☆53Updated 2 years ago
- Code Integrity Violation Spotter☆17Updated last year
- A research project about Windows notify routines.☆37Updated 5 years ago
- A set of small utilities, helpers for PIN tracers☆35Updated 2 months ago
- ☆15Updated 3 years ago
- allowing um r/w through km from um ioctl ™☆11Updated 3 years ago
- Application Verifier Dynamic Fault Injection☆39Updated 3 months ago
- Miscellaneous Code and Docs☆84Updated 5 months ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆27Updated 2 years ago
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆37Updated last year
- SoulExtraction is a windows driver library for extracting cert information in windows drivers☆25Updated 2 years ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆63Updated last year
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆18Updated 2 years ago
- ☆21Updated 4 years ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- Binary Ninja plugin to perform automated analysis of Windows drivers☆18Updated 6 years ago
- C++ library for low-level Windows development☆81Updated last year
- Infects PE files with a shellcode☆22Updated 7 years ago
- Static library and headers for linking your software with ntdll.dll☆37Updated 5 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆53Updated last year
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆74Updated 2 years ago
- A test project to try the new win32k.sys system call filtering mitigation in Windows 10☆15Updated 6 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated 2 years ago
- Various WinDbg extensions and scripts☆31Updated 7 years ago
- Windows driver template, using C++20 & cmake & GithubActions☆22Updated last year
- Monitor ETW events for Windows process mitigation policies, with stack traces☆31Updated 3 years ago
- ☆58Updated this week
- ☆18Updated 4 years ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆86Updated 5 years ago
- XOrCryptEx lightweight C Utility/Algorithm☆10Updated 3 years ago