Simple example for getting started with eBPF for Windows
☆54Feb 23, 2025Updated last year
Alternatives and similar repositories for TraceConnections
Users that are interested in TraceConnections are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Work with eBPF on Windows☆45Feb 26, 2025Updated last year
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆81Sep 8, 2025Updated 11 months ago
- Simple utility to watch directory change notifications on a given path☆20Oct 6, 2017Updated 8 years ago
- ☆42Jul 4, 2026Updated last month
- A few examples of how to trap virtual memory access on Windows.☆40Dec 18, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A synergized Visual Studio and Rust development environment☆19Jan 25, 2025Updated last year
- Executes Read/Write process memory with `NtQueryCompositionSurfaceStatistics`☆24Feb 10, 2024Updated 2 years ago
- debug isolated usermode process on Nested Virtualization guest vm☆34Oct 20, 2025Updated 9 months ago
- A flexible and efficient binary pattern matching library designed to help you search and match binary data☆16Oct 29, 2025Updated 9 months ago
- ☆24Feb 9, 2025Updated last year
- Updated version of a long known self deletion technique to work with 24H2.☆63Jun 9, 2025Updated last year
- A minimalistic logger for Windows Kernel Drivers.☆23Mar 8, 2024Updated 2 years ago
- My research into the Windows UCPD☆16Jul 28, 2026Updated last week
- ☆30Jul 13, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Enum and Remove Hook in Windows☆54Mar 28, 2026Updated 4 months ago
- Virtual Trust Level (VTL 1) secure call tracing☆104Jul 19, 2026Updated 3 weeks ago
- A simple example how to decrypt kernel debugger data block☆32Feb 8, 2021Updated 5 years ago
- Undocumented BindFlt user mode API.☆18Mar 7, 2025Updated last year
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆178Feb 10, 2026Updated 5 months ago
- PE Viewer☆233Jun 11, 2026Updated last month
- Collaborative Reverse Engineering plugin for IDA Pro & Hex-Rays☆57Apr 21, 2026Updated 3 months ago
- Use of in-memory string scans to outsmart reverse engineers☆20Nov 20, 2024Updated last year
- List UEFI Configuration Tables☆14May 23, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls☆288Jul 13, 2026Updated 3 weeks ago
- Kassandra is a custom Mythic C2 agent written in Rust, containerized via a Python-based builder☆18Jul 31, 2026Updated last week
- Native Powers Talk demos☆20Jan 30, 2026Updated 6 months ago
- ☆15Jan 15, 2026Updated 6 months ago
- Idiomatic Rust bindings for the IDA SDK, enabling the development of standalone analysis tools using IDA v9.x’s idalib☆308Jul 26, 2026Updated 2 weeks ago
- Debug Print viewer (user and kernel)☆71Feb 7, 2024Updated 2 years ago
- A New Exploitation Technique for Visual Studio Projects☆13Nov 5, 2023Updated 2 years ago
- This is a ring -1 header framework in order to simplify the creation of hypervisors on SVM☆31Nov 6, 2023Updated 2 years ago
- A x86_64 software emulator☆162Aug 25, 2025Updated 11 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Different tools for Microsoft Hyper-V researching☆77May 24, 2026Updated 2 months ago
- PE Sections Packer + Loader for Windows - Packs a DLL/EXE file and maps it into the loader (C/C++)☆15Oct 19, 2025Updated 9 months ago
- An (WIP) EDR Evasion tool for x64 Windows & Linux binaries that utilizes Nanomites, written in Rust.☆34May 8, 2026Updated 3 months ago
- Unused DLL hollowing PoC in Nim☆17Jan 31, 2022Updated 4 years ago
- Single stub direct and indirect syscalling with runtime SSN resolving for windows.☆240Mar 23, 2023Updated 3 years ago
- WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.☆112Jun 22, 2026Updated last month
- A tracker DLL which enables 'NTAPI->Syscall' tracking whenever it is loaded. It calls 'NtSetInformationProcess' API call with a callback …☆14Oct 21, 2024Updated last year