Repository navigation

#

ntoskrnl

Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.

C++
618
8 个月前

Web-based tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS.

Rust
349
4 天前

Cross-platform tool that allows browsing and extracting C and C++ type declarations from PDB files.

Rust
338
8 个月前

Collect different versions of Crucial modules.

Batchfile
144
1 年前

Enumerate user mode shared memory mappings on Windows.

C
123
5 年前

Windows kernel debugger for Linux hosts running Windows under KVM/QEMU

C++
96
4 个月前

Collect various versions of ntoskrnl files

57
2 年前

ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel driver by importing at runtime.

C++
47
3 年前

A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using InstrumentationCallback.

C++
32
2 年前

runtime patchguard disabler (win 10 & 11)

C
12
2 个月前

EPROCESS Unlinking example in "C" using DKOM Manipulation

C++
10
1 年前

Game Engine from an ADHDer that will never be finished.

C++
9
9 个月前

Dump ntoskrnl.exe important offsets for building your navigation system in the Windows Kernel, using Radare2 and Rust

Rust
8
3 年前

💠 Documented and undocumented WinAPI search.

TypeScript
8
2 个月前

All undocumented ntoskrnl structs crawled from vergiliusproject.com

C
4
2 年前

PsLoadedModuleList Unlinking through DKOM Manipulation

4
7 天前