zodiacon / ApiSetViewLinks
API Set Viewer
☆91Updated 6 months ago
Alternatives and similar repositories for ApiSetView
Users that are interested in ApiSetView are comparing it to the libraries listed below
Sorting:
- A WinDbg extension to trace COM interactions☆121Updated last year
- File system minifilter driver for Windows to block symbolic link attacks.☆52Updated 4 years ago
- Run Processes as PPL with ELAM☆166Updated 3 years ago
- ☆62Updated last year
- ☆18Updated 4 years ago
- Command like tool to print mitigation flags for running processes in a memory dump☆47Updated 4 years ago
- ☆82Updated 3 years ago
- Explore Job Objects on a Windows system☆85Updated 5 years ago
- https://blog.f-secure.com/hiding-malicious-code-with-module-stomping/☆120Updated 5 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆144Updated 6 years ago
- Sysmon shenanigans☆66Updated 4 years ago
- C++ library for low-level Windows development☆80Updated last year
- Dumps information about all the callback objects found in a dump file and the functions registered for them☆36Updated 4 years ago
- Samples from my book Windows Native API programming☆74Updated 2 months ago
- ☆70Updated 5 months ago
- Windows Drivers☆99Updated 6 years ago
- Run any executable as SYSTEM account (no service required)☆134Updated last year
- Windows kernel PDB data parsed into YAML☆38Updated 8 months ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆146Updated 4 years ago
- Weaponizing Gigabyte driver for priv escalation and bypass PPL☆68Updated 6 years ago
- Hook all callbacks which are registered with LdrRegisterDllNotification☆88Updated 4 months ago
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆88Updated 9 years ago
- Some Code Samples for Windows based Inter-Process-Communication (IPC)☆189Updated last year
- A novel technique to communicate between threads using the standard ETHREAD structure☆113Updated 4 years ago
- The Console Monitor Driver is a KMDF kernel-mode filter driver that captures certain Fast I/O operations (input and output) that is sent …☆39Updated 2 years ago
- Windows Kernel Programming Experiments☆80Updated 2 years ago
- Demos and presentation from SECArmy Village Grayhat 2020☆38Updated 2 years ago
- ☆19Updated 5 years ago
- ☆25Updated last year
- Local OXID Resolver (LCLOR) : Research and Tooling☆35Updated 4 years ago