zodiacon / JobExplorer
Explore Job Objects on a Windows system
☆82Updated 5 years ago
Alternatives and similar repositories for JobExplorer:
Users that are interested in JobExplorer are comparing it to the libraries listed below
- View handles and object for each object type☆62Updated 5 years ago
- Run any executable as SYSTEM account (no service required)☆127Updated 10 months ago
- Log ALPC activity☆82Updated last year
- API Set Viewer☆88Updated 2 months ago
- An command-line RPC method enumerator, born out of RPCView's awesomeness☆103Updated 5 years ago
- Trace events in real time sessions☆44Updated last year
- Command like tool to print mitigation flags for running processes in a memory dump☆46Updated 4 years ago
- ☆33Updated 3 years ago
- Samples from my book Windows Native API programming☆60Updated last month
- Call 32bit NtDLL API directly from WoW64 Layer☆60Updated 4 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 6 years ago
- Tools made for my Hyper-V blog series @ https://foxhex0ne.blogspot.com/☆55Updated 4 years ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆104Updated 4 years ago
- Dumps information about all the callback objects found in a dump file and the functions registered for them☆35Updated 4 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆51Updated 4 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆67Updated 4 years ago
- ☆78Updated 3 years ago
- C++ library for low-level Windows development☆73Updated 11 months ago
- ☆64Updated 3 years ago
- Inject unsigned DLL into Protected Process Light (PPL)☆21Updated 3 months ago
- A PoC designed to bypass all usermode hooks in a WoW64 environment.☆149Updated 4 years ago
- Windows_OS_Internals_Curriculum_Resource_Kit-ACADEMIC☆23Updated 6 years ago
- A WinDbg extension to trace COM interactions☆114Updated last year
- An example of a client and server using Windows' ALPC functions to send and receive data.☆94Updated 2 months ago
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆87Updated 9 years ago
- Windows Kernel Programming☆124Updated 4 years ago
- A simple POC to demonstrate the power of .NET debugging for injection☆72Updated 4 years ago
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆97Updated 4 years ago
- Blog posts☆30Updated 4 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated 8 months ago