Samples for the book Windows Kernel Programming, 2nd edition
☆373Aug 2, 2025Updated 6 months ago
Alternatives and similar repositories for windowskernelprogrammingbook2e
Users that are interested in windowskernelprogrammingbook2e are comparing it to the libraries listed below
Sorting:
- The Windows Kernel Programming book samples☆666Sep 25, 2023Updated 2 years ago
- C++ library for low-level Windows development☆81Apr 12, 2024Updated last year
- Windows 10 System Programming book samples☆449Oct 19, 2025Updated 4 months ago
- Windows System Explorer☆878Nov 29, 2025Updated 3 months ago
- Windows Anti-Rootkit Tool☆545Dec 31, 2025Updated 2 months ago
- Native API header files for the System Informer project.☆1,347May 25, 2025Updated 9 months ago
- ☆58Dec 8, 2025Updated 2 months ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆386Jul 6, 2022Updated 3 years ago
- Code to make it easier to write an NDIS network driver on Windows☆93Oct 1, 2023Updated 2 years ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆284Jan 27, 2025Updated last year
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆110Apr 24, 2020Updated 5 years ago
- Enhanced version of the classic Spy++ tool☆222Oct 6, 2025Updated 4 months ago
- KSOCKET provides a very basic example how to make a network connections in the Windows Driver by using WSK☆541Sep 2, 2022Updated 3 years ago
- All reasonably stable tools☆1,395Jan 3, 2026Updated last month
- Kernel Driver Utility☆2,422Feb 17, 2026Updated last week
- Debug Print viewer (user and kernel)☆72Feb 7, 2024Updated 2 years ago
- Process Monitor X v2☆648Jan 22, 2024Updated 2 years ago
- Tutorial & a blog post that demonstrate how to code a Windows driver to inject a custom DLL into all running processes. I coded it from s…☆142Aug 2, 2021Updated 4 years ago
- Windows Kernel inject (no module no thread)☆282Nov 11, 2022Updated 3 years ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆317Oct 13, 2024Updated last year
- InfinityHookPro Win7 -> Win11 latest☆551Feb 7, 2023Updated 3 years ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆166Oct 5, 2022Updated 3 years ago
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,270May 1, 2024Updated last year
- Intercepting DeviceControl via WPP☆138Nov 18, 2019Updated 6 years ago
- Driver Loader/BE Bypass/Win Malware(lol)☆36Jun 25, 2019Updated 6 years ago
- Kernel LdrLoadDll injector☆264Oct 6, 2018Updated 7 years ago
- Windows Object Explorer 64-bit☆1,886Feb 10, 2026Updated 2 weeks ago
- My personal cheat sheet for using WinDbg for kernel debugging☆453Apr 17, 2025Updated 10 months ago
- Sysmon-Like research tool for ETW☆384Nov 15, 2022Updated 3 years ago
- ☆139Mar 21, 2020Updated 5 years ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,278Feb 14, 2026Updated 2 weeks ago
- Samples from my book Windows Native API programming☆79May 11, 2025Updated 9 months ago
- System call hook for Windows 10 20H1☆496Jun 26, 2021Updated 4 years ago
- Windows Filtering Platform Explorer☆327Aug 28, 2025Updated 6 months ago
- Explore Kernel Objects on Windows☆243Apr 4, 2025Updated 10 months ago
- Hyper-V Research is trendy now☆181Feb 21, 2026Updated last week
- 🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc☆2,007Jul 13, 2022Updated 3 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆344Apr 27, 2020Updated 5 years ago
- ☆29Jan 15, 2021Updated 5 years ago