zodiacon / KObjectsLinks
Sample for Creating a new kernel object type and supporting API
☆24Updated 9 months ago
Alternatives and similar repositories for KObjects
Users that are interested in KObjects are comparing it to the libraries listed below
Sorting:
- Example of building an application verifer DLL☆46Updated last year
- Debug Print viewer (user and kernel)☆66Updated last year
- SetWinEventHook Sample☆48Updated last year
- Remote Thread Detection with a Kernel Driver☆30Updated 5 months ago
- Elevate arbitrary MSR writes to kernel execution.☆36Updated last year
- Bypassing kernel patch protection runtime☆20Updated 2 years ago
- Windows driver template, using C++20 & cmake & GithubActions☆22Updated 10 months ago
- Generate a PDB file given the old PDB file and an address mapping☆48Updated 3 months ago
- Header-only C++ library for producing PE files.☆33Updated 2 years ago
- ☆17Updated 10 months ago
- ☆16Updated 8 months ago
- silence file system monitoring components by hooking their minifilters☆57Updated last year
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆18Updated last year
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated 2 years ago
- ☆26Updated 4 years ago
- View Windows System in action☆40Updated last month
- ☆15Updated 2 years ago
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆55Updated 2 years ago
- Easy encrypt/decrypt data with TPM☆25Updated last year
- ☆25Updated 2 years ago
- Application Verifier Dynamic Fault Injection☆39Updated 2 months ago
- WinHvShellcodeEmulator (WHSE) is a shellcode emulator leveraging the Windows Hypervisor Platform API☆23Updated 3 years ago
- Proof-of-concept game using VBS enclaves to protect itself from cheating☆40Updated 7 months ago
- Compileable POC of namazso's x64 return address spoofer.☆52Updated 5 years ago
- A native Windows library for intercepting kernel-to-user transitions using instrumentation callbacks☆20Updated last year
- Hook all callbacks which are registered with LdrRegisterDllNotification☆87Updated 2 months ago
- ☆14Updated last year
- Create stealthy, inline, EPT-like hooks using SMAP and SMEP☆55Updated 8 months ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year