Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.
-
Updated
Dec 25, 2024 - C++
Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.
Web-based tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS.
The history of Windows Internals via symbols.
Enumerate user mode shared memory mappings on Windows.
Kernel Level NMI Callback Blocker
Analysis of the vulnerability
A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using InstrumentationCallback.
Kernel Mode DLL Manual Mapper
All undocumented ntoskrnl structs crawled from vergiliusproject.com
PsLoadedModuleList Unlinking through DKOM Manipulation
A mirror of Windows NT Kernel Documentation
Add a description, image, and links to the ntoskrnl topic page so that developers can more easily learn about it.
To associate your repository with the ntoskrnl topic, visit your repo's landing page and select "manage topics."