Simple example for getting started with eBPF for Windows
☆54Feb 23, 2025Updated last year
Alternatives and similar repositories for TraceConnections
Users that are interested in TraceConnections are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Work with eBPF on Windows☆45Feb 26, 2025Updated last year
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆89Sep 8, 2025Updated last year
- Simple utility to watch directory change notifications on a given path☆20Oct 6, 2017Updated 9 years ago
- ☆42Jul 4, 2026Updated 3 months ago
- A few examples of how to trap virtual memory access on Windows.☆40Dec 18, 2024Updated last year
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A synergized Visual Studio and Rust development environment☆17Jan 25, 2025Updated last year
- Executes Read/Write process memory with `NtQueryCompositionSurfaceStatistics`☆23Feb 10, 2024Updated 2 years ago
- debug isolated usermode process on Nested Virtualization guest vm☆33Oct 20, 2025Updated 11 months ago
- A flexible and efficient binary pattern matching library designed to help you search and match binary data☆16Oct 29, 2025Updated 11 months ago
- ☆24Feb 9, 2025Updated last year
- Updated version of a long known self deletion technique to work with 24H2.☆62Jun 9, 2025Updated last year
- A minimalistic logger for Windows Kernel Drivers.☆23Mar 8, 2024Updated 2 years ago
- My research into the Windows UCPD☆17Jul 28, 2026Updated 2 months ago
- ☆29Updated this week
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Enum and Remove Hook in Windows☆54Mar 28, 2026Updated 6 months ago
- Virtual Trust Level (VTL 1) secure call tracing☆107Jul 19, 2026Updated 2 months ago
- A simple example how to decrypt kernel debugger data block☆32Feb 8, 2021Updated 5 years ago
- Undocumented BindFlt user mode API.☆19Mar 7, 2025Updated last year
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆180Feb 10, 2026Updated 7 months ago
- PE Viewer☆236Updated this week
- Collaborative Reverse Engineering plugin for IDA Pro & Hex-Rays☆57Apr 21, 2026Updated 5 months ago
- Use of in-memory string scans to outsmart reverse engineers☆20Nov 20, 2024Updated last year
- Kassandra is a custom Mythic C2 agent written in Rust, containerized via a Python-based builder☆24Jul 31, 2026Updated 2 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls☆292Jul 13, 2026Updated 2 months ago
- Native Powers Talk demos☆19Jan 30, 2026Updated 8 months ago
- ☆16Jan 15, 2026Updated 8 months ago
- Debug Print viewer (user and kernel)☆72Sep 17, 2026Updated 3 weeks ago
- A New Exploitation Technique for Visual Studio Projects☆13Nov 5, 2023Updated 2 years ago
- This is a ring -1 header framework in order to simplify the creation of hypervisors on SVM☆32Nov 6, 2023Updated 2 years ago
- Idiomatic Rust bindings for the IDA SDK, enabling the development of standalone analysis tools using IDA v9.x’s idalib☆330Sep 11, 2026Updated 3 weeks ago
- A x86_64 software emulator☆168Aug 25, 2025Updated last year
- List UEFI Configuration Tables☆16May 23, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Different tools for Microsoft Hyper-V researching☆77May 24, 2026Updated 4 months ago
- An (WIP) EDR Evasion tool for x64 Windows & Linux binaries that utilizes Nanomites, written in Rust.☆35May 8, 2026Updated 5 months ago
- PE Sections Packer + Loader for Windows - Packs a DLL/EXE file and maps it into the loader (C/C++)☆16Oct 19, 2025Updated 11 months ago
- Unused DLL hollowing PoC in Nim☆17Jan 31, 2022Updated 4 years ago
- WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.☆111Jun 22, 2026Updated 3 months ago
- Single stub direct and indirect syscalling with runtime SSN resolving for windows.☆238Mar 23, 2023Updated 3 years ago
- A tracker DLL which enables 'NTAPI->Syscall' tracking whenever it is loaded. It calls 'NtSetInformationProcess' API call with a callback …☆14Oct 21, 2024Updated last year