Repository navigation

#

ntoskrnl

Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.

C++
589
3 个月前

Web-based tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS.

Rust
338
1 天前

Cross-platform tool that allows browsing and extracting C and C++ type declarations from PDB files.

Rust
312
2 个月前

Collect different versions of Crucial modules.

Batchfile
131
9 个月前

Enumerate user mode shared memory mappings on Windows.

C
120
4 年前

Windows kernel debugger for Linux hosts running Windows under KVM/QEMU

C++
73
6 个月前

Collect various versions of ntoskrnl files

50
1 年前

ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel driver by importing at runtime.

C++
48
2 年前

A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using InstrumentationCallback.

C++
26
2 年前

EPROCESS Unlinking example in "C" using DKOM Manipulation

C++
8
8 个月前

Dump ntoskrnl.exe important offsets for building your navigation system in the Windows Kernel, using Radare2 and Rust

Rust
8
2 年前

💠 Documented and undocumented WinAPI search.

TypeScript
8
5 个月前

PsLoadedModuleList Unlinking through DKOM Manipulation

4
10 个月前

All undocumented ntoskrnl structs crawled from vergiliusproject.com

C
3
2 年前

A mirror of Windows NT Kernel Documentation

HTML
0
1 年前