Driver-backed Windows kernel interface for VAD-tree inspection/manipulation, PTE relinking, and cross-process memory operations, with runtime symbol resolution from ntoskrnl's PDB.
-
Updated
Jun 21, 2026 - C
Driver-backed Windows kernel interface for VAD-tree inspection/manipulation, PTE relinking, and cross-process memory operations, with runtime symbol resolution from ntoskrnl's PDB.
UEFI Bootkit PoC that demonstrates pre-OS kernel integrity subversion on Windows 10/11 with Secure Boot disabled.
An OpenSource environment that makes Windows partially opensource
Add a description, image, and links to the ntoskrnlexe topic page so that developers can more easily learn about it.
To associate your repository with the ntoskrnlexe topic, visit your repo's landing page and select "manage topics."