Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module
-
Updated
Sep 9, 2018 - C
Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module
WKTools Is a Power Windows Kernel Tools
Windows Kernel Programming
Anti-Ransomware Detection Tool
Practical Reverse Engineering Exercises
All undocumented ntoskrnl structs crawled from vergiliusproject.com
The project demonstrates a simple detection method for SSDT Hook in User Mode via BYOVD
Lab ini dirancang khusus untuk mempelajari teknik eksploitasi pada ring 0 (Kernel Mode). Berfokus pada analisis kerentanan driver Windows, repositori ini mencakup berbagai metode untuk memicu vulnerability seperti Stack Overflow, Pool Overflow, atau Arbitrary Write. Ideal bagi Security Researcher yang ingin memperdalam kemampuan Reverse Engineering
Add a description, image, and links to the windowskernel topic page so that developers can more easily learn about it.
To associate your repository with the windowskernel topic, visit your repo's landing page and select "manage topics."