Remote Thread Detection with a Kernel Driver
☆34Jan 14, 2025Updated last year
Alternatives and similar repositories for RemoteThreadDetection
Users that are interested in RemoteThreadDetection are comparing it to the libraries listed below
Sorting:
- Demo from the Malware Analysis and Development Webinar☆25Apr 17, 2024Updated last year
- Sample for Creating a new kernel object type and supporting API☆28Sep 7, 2024Updated last year
- Example of building an application verifer DLL☆51Jun 1, 2024Updated last year
- View Windows System in action☆45Aug 3, 2025Updated 7 months ago
- ☆27Jul 13, 2025Updated 8 months ago
- ☆22Feb 9, 2025Updated last year
- Samples from my book Windows Native API programming☆80May 11, 2025Updated 10 months ago
- Library for custom colors and dark mode support for most common controls in applications using Win32 API☆85Jan 23, 2026Updated last month
- Some useful libraries converted to WatcomC++.☆19Mar 11, 2026Updated last week
- ☆20Mar 15, 2023Updated 3 years ago
- ☆16Mar 22, 2023Updated 2 years ago
- ☆58Feb 27, 2026Updated 3 weeks ago
- Work with eBPF on Windows☆44Feb 26, 2025Updated last year
- Erebus is a payload generator written in Nim.☆17Jun 13, 2023Updated 2 years ago
- Windows Filtering Platform Explorer☆335Aug 28, 2025Updated 6 months ago
- ☆40May 10, 2025Updated 10 months ago
- Self delete DLL (2)☆14Feb 15, 2024Updated 2 years ago
- research revolving the windows filtering platform callout mechanism☆39May 26, 2024Updated last year
- anti-ransomware file-system filter☆69Sep 3, 2024Updated last year
- ☆13Aug 17, 2025Updated 7 months ago
- AI-based Ludus range configuration builder☆29May 6, 2025Updated 10 months ago
- Identifies LOLDrivers that are not blocked by the active HVCI policy — ideal for BYOVD scenarios.☆34Feb 1, 2026Updated last month
- Youtube channel sample code☆55Mar 14, 2026Updated last week
- RE for champions☆15Mar 10, 2026Updated last week
- Rootkit for the blue team. Sophisticated and optimized LKM to detect and prevent malicious activity☆34Apr 26, 2024Updated last year
- Direct syscalls Injection to bypass AV/EDR☆11May 18, 2024Updated last year
- Some basic info, resources, and code snippets about windows kernel exploitation☆17Jul 18, 2025Updated 8 months ago
- A simple provider to analyse what gets passed into Microsoft's Anti-Malware Scan Interface☆17Jan 10, 2020Updated 6 years ago
- Rust crate to parse user-mode minidump files generated on Windows☆18Nov 17, 2025Updated 4 months ago
- Simple x86/x64 Assembler/Disassembler/Emulator☆189Dec 13, 2025Updated 3 months ago
- Inject both of x86/x64 dll to any process from only x86 or x64 exe.☆10Jan 30, 2025Updated last year
- ☆19Sep 1, 2025Updated 6 months ago
- Kernel mode to user mode dll injection☆308Apr 10, 2021Updated 4 years ago
- Tools for attacking Computer Use Agents☆27Jan 16, 2026Updated 2 months ago
- Samples for the book Windows Kernel Programming, 2nd edition☆373Aug 2, 2025Updated 7 months ago
- ☆17Feb 15, 2022Updated 4 years ago
- Anti-Rootkit/Anti-Cheat Driver to uncover unbacked or hidden kernel code.☆303Mar 12, 2026Updated last week
- Easy encrypt/decrypt data with TPM☆25Feb 28, 2024Updated 2 years ago
- ☆72Jan 31, 2025Updated last year