zhuhuibeishadiao / ntoskrnl
The Windows Research Kernel (WRK)
☆193Updated 8 years ago
Alternatives and similar repositories for ntoskrnl:
Users that are interested in ntoskrnl are comparing it to the libraries listed below
- Windows inline hooking tool.☆253Updated 6 years ago
- Minimalistic AMD-V/SVM hypervisor with memory introspection capabilities☆248Updated last month
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆311Updated 2 years ago
- Debugger Anti-Detection Benchmark☆325Updated last year
- System call hook for Windows 10 20H1☆484Updated 3 years ago
- The Grimoire Hypervisor solution for x86 Processors with experimental nested virtualization support. Remastering with Rust in progress.☆517Updated 2 weeks ago
- Native code virtualizer for x64 binaries☆480Updated 3 months ago
- Bypassing PatchGuard on modern x64 systems☆257Updated 2 years ago
- ☆174Updated 2 weeks ago
- Collection of undocumented Windows API declarations.☆308Updated last week
- Browse Page Tables on Windows (Page Table Viewer)☆197Updated 3 years ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆275Updated last year
- Samples for the book Windows Kernel Programming, 2nd edition☆329Updated 3 months ago
- Simple Intel VT-x hypervisor☆293Updated last year
- Easy Anti PatchGuard☆214Updated 4 years ago
- A library to develop kernel level Windows payloads for post HVCI era☆395Updated 3 years ago
- Hooking Windows' exception dispatcher to protect process's PML4☆162Updated 2 months ago
- Load your driver like win32k.sys☆251Updated 2 years ago
- Kernel LdrLoadDll injector☆259Updated 6 years ago
- Single header version of System Informer's phnt library.☆209Updated this week
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆242Updated this week
- This project migrated to https://github.com/backengineering/llvm-msvc☆140Updated last year
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆247Updated 2 months ago
- Simple x86/x86_64 instruction level obfuscator based on a basic SBI engine☆264Updated 2 years ago
- ☆198Updated 2 years ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆532Updated 3 months ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆142Updated 2 years ago
- Collection of hypervisor detections☆230Updated 6 months ago
- x64 Windows PatchGuard bypass, register process-creation callbacks from unsigned code☆202Updated 3 years ago
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆197Updated 5 months ago