Pinned Repositories
callstack_spoof
DriverCE
DrvMon
a monitoring windows driver calls kernel api tools
HideProcess
Hide Process
InfinityHook_latest
etw hook (syscall/infinity hook) compatible with the latest Windows version of PG
InfinityHookClass
EtwHook for win7-win11;
kcrypt
an encryption library designed for Windows kernel and driver programming
oxgenPdb
a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.
SelfIdaPluginsUtils
some small and easy small ida plugins code with python
trashed-vt-syscallhook
Oxygen1a1's Repositories
Oxygen1a1/InfinityHook_latest
etw hook (syscall/infinity hook) compatible with the latest Windows version of PG
Oxygen1a1/callstack_spoof
Oxygen1a1/kcrypt
an encryption library designed for Windows kernel and driver programming
Oxygen1a1/oxgenPdb
a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.
Oxygen1a1/DrvMon
a monitoring windows driver calls kernel api tools
Oxygen1a1/DriverCE
Oxygen1a1/HideProcess
Hide Process
Oxygen1a1/InfinityHookClass
EtwHook for win7-win11;
Oxygen1a1/trashed-vt-syscallhook
Oxygen1a1/Book-Notes-on-Design-and-Implementation-of-a-64-bit-Operating-System
Book Notes on "Design and Implementation of a 64-bit Operating System"
Oxygen1a1/InlineHookClass-x64-x86
类似易语言的超级Hook 可以在任意地址进行Hook 并且返回到Hook的地方
Oxygen1a1/NaotanPdbParser
Very easy to use pdb parsing library with only one header file,You can use it even if you are a fool.
Oxygen1a1/FlameBro-WinKernel-Study
自己学习火哥写的源码
Oxygen1a1/OxygenArk
now it's updating....
Oxygen1a1/Wow64HookServiceTable
This is only a test semi-finished product. the way to get ServiceTable is not compatible. If you want to use it, please improve it.
Oxygen1a1/FindWDK
CMake module for building drivers with Windows Development Kit (WDK)
Oxygen1a1/awesome-game-security
awesome game security [Welcome to PR]
Oxygen1a1/DragPatch
MFC 实现拖拽补丁
Oxygen1a1/MemoryModule
A tool to parse and load module in memory, as well as attach a DLL in EXE. Most of the functions are inline, so that it can also be used in shellcode.
Oxygen1a1/Ntoskrnl_Viewer
可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。
Oxygen1a1/things2do
a small to do list tools for work
Oxygen1a1/WindowsCamp
Windows Kernel Knowledge && Collect Resources on the wire && Nothing innovation by myself &&
Oxygen1a1/SelfIdaPluginsUtils
some small and easy small ida plugins code with python
Oxygen1a1/blog_test
Oxygen1a1/BranchesTrace
Ollydbg Plugin BranchesTrace
Oxygen1a1/comment
Oxygen1a1/OpenArk
OpenArk is an open source anti-rookit(ARK) tool for Windows.
Oxygen1a1/Oxygen1a1
Config files for my GitHub profile.
Oxygen1a1/OxygenDriver
Oxygen1a1/vt-debuuger
a debugger use vt technology