zodiacon / windowskernelprogrammingbook2e
Samples for the book Windows Kernel Programming, 2nd edition
☆331Updated 4 months ago
Alternatives and similar repositories for windowskernelprogrammingbook2e:
Users that are interested in windowskernelprogrammingbook2e are comparing it to the libraries listed below
- The Windows Kernel Programming book samples☆627Updated last year
- C++ STL in the Windows Kernel with C++ Exception Support☆407Updated last year
- Windows 10 System Programming book samples☆424Updated 10 months ago
- Process Monitor X v2☆607Updated last year
- System call hook for Windows 10 20H1☆483Updated 3 years ago
- Collection of undocumented Windows API declarations.☆310Updated 3 weeks ago
- Windows NT x64 syscall fuzzer☆602Updated last year
- My notes while studying Windows internals☆425Updated 4 months ago
- Windows Anti-Rootkit Tool☆489Updated last month
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆247Updated 2 months ago
- Detours with just single dependency - NTDLL☆632Updated 2 years ago
- My personal cheat sheet for using WinDbg for kernel debugging☆414Updated last week
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆535Updated 3 months ago
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆250Updated this week
- SimpleSvmHook is a research purpose hypervisor for Windows on AMD processors.☆381Updated 4 years ago
- Windows inline hooking tool.☆259Updated 6 years ago
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆400Updated 9 months ago
- PE Viewer☆175Updated 3 months ago
- MemoryModule which compatible with Win32 API and support exception handling☆398Updated 2 months ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆867Updated 5 years ago
- KSOCKET provides a very basic example how to make a network connections in the Windows Driver by using WSK☆492Updated 2 years ago
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,209Updated 11 months ago
- A library to develop kernel level Windows payloads for post HVCI era☆396Updated 3 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆312Updated 2 years ago
- InfinityHookPro Win7 -> Win11 latest☆518Updated 2 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆588Updated 2 months ago
- Debugger Anti-Detection Benchmark☆328Updated last year
- VirtualKD-Redux - A revival and modernization of VirtualKD☆878Updated 10 months ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆354Updated 6 months ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,165Updated last year