zodiacon / KObjects
Sample for Creating a new kernel object type and supporting API
☆22Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for KObjects
- Debug Print viewer (user and kernel)☆63Updated 9 months ago
- Example of building an application verifer DLL☆44Updated 5 months ago
- View Windows System in action☆39Updated 3 months ago
- SetWinEventHook Sample☆41Updated last year
- Reimplement CreateProcessInternalW via Windows 10 20H1+/Windows 11 Base on NtCreateUserProcess-Post☆47Updated 2 months ago
- silence file system monitoring components by hooking their minifilters☆51Updated 9 months ago
- Windows driver template, using C++20 & cmake & GithubActions☆19Updated 3 months ago
- ☆14Updated 3 months ago
- Bypassing kernel patch protection runtime☆19Updated last year
- Proof-of-concept game using VBS enclaves to protect itself from cheating☆19Updated last week
- ☆57Updated 2 years ago
- An extended proof-of-concept for the CVE-2021-21551 Dell ‘dbutil_2_3.sys’ Kernel Exploit☆23Updated 3 years ago
- ☆25Updated 3 years ago
- Windows kernel driver template for cmkr and llvm-msvc.☆33Updated 11 months ago
- Hook all callbacks which are registered with LdrRegisterDllNotification☆83Updated last year
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆33Updated 2 years ago
- Windows PDB parser for kernel-mode environment.☆90Updated last year
- Dell Driver EoP (CVE-2021-21551)☆26Updated last year
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆48Updated last year
- Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)☆61Updated last year
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆46Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Samples from my book Windows Native API programming☆57Updated 4 months ago
- research revolving the windows filtering platform callout mechanism☆21Updated 5 months ago
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆30Updated last month
- Based on minhook☆27Updated last year
- windows rootkit☆51Updated 6 months ago
- Load dll with undocumented functions and debug symbols☆49Updated 4 months ago
- Protect a process from code injection, termination and hooking☆38Updated 3 years ago
- Process Creation, Image Load and Thread Creation Notification☆10Updated last year