Repository navigation

#

windowsinternals

CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers

C
143
5 年前

Windows Kernel Programming

C++
131
5 年前

A ProcMon-esque tool for monitoring Windows Kernel Drivers

C++
57
4 年前

Modern C++ wrapper for Windows PE signature verification mechanism

C++
28
6 年前

KNSoft.NDK provides native C/C++ definitions and import libraries for Windows NT.

C
17
3 天前

A command-line tool for extracting Win32 API documentation from Microsoft Learn.

Python
13
22 天前

Practical Reverse Engineering Exercises

C++
6
3 年前

Repo contains POCs taken from the course Malware Development 1: The Basics and its succeeding Malware Development 2: Advanced Techniques

C++
6
6 个月前

A simple Kernel Driver that I made while learning the basics of Windows Internals, used to ReadProcessMemory and WriteProcessMemory of another process

C
4
6 个月前

Useful PDFs to learn Reverse engineering, Assembly, C and Windows Internals.

2
8 个月前

Implementation of the Process Hollowing technique for process injection (This is the second of three methods in the series)

C++
1
1 年前

Implementation of the Process Hollowing technique for process injection (This is the first of three methods in the series)

C++
0
1 年前

This is a dumping zone for random things which I tend to forget or stumble upon doing some stuff. Stuff related to windows internals, debugging, security and computers.

SCSS
0
2 年前

Implementation of the Process Injection technique for DLL file injection

C++
0
1 年前

Implementation of the Process Hollowing technique for process injection (This is the third of three methods in the series)

C++
0
1 年前