Projects in Awesome Lists tagged with ntapi
A curated list of projects in awesome lists tagged with ntapi .
https://github.com/M2TeamArchived/NSudo
[Deprecated, work in progress alternative: https://github.com/M2Team/NanaRun] Series of System Administration Tools
accesscheck administration bypass devilmode integritylevel launcher nsudo ntapi privileges process session system token trustedinstaller windows
Last synced: 02 Apr 2025
https://github.com/m2teamarchived/nsudo
[Deprecated, work in progress alternative: https://github.com/M2Team/NanaRun] Series of System Administration Tools
accesscheck administration bypass devilmode integritylevel launcher nsudo ntapi privileges process session system token trustedinstaller windows
Last synced: 28 Sep 2025
https://github.com/f1zm0/hades
Go shellcode loader that combines multiple evasion techniques
adversary-emulation av-evasion edr-evasion evasion golang ntapi ntdll offensive-security pentesting red-teaming syscalls
Last synced: 06 Apr 2025
https://github.com/voidvxvi/HellBunny
Malleable shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks
api-hashing direct-syscalls dll dll-sideloading edr-bypass edr-evasion iat-camouflage indirect-syscalls maldev malware-development msvc native-api ntapi payload-encryption process-injection shellcode-injection shellcode-loader windows
Last synced: 30 Dec 2025
https://github.com/knsoft/knsoft.ndk
KNSoft.NDK provides native C/C++ definitions and import libraries for Windows NT.
ntapi ntdll reverse-engineering sdk-windows windows windowsinternals
Last synced: 06 Feb 2026
https://github.com/apriorit/apihookinglibraries
Samples that shows how to use API Hook libraries: Detours, Deviare, MHook, EasyHook to hide files with the "+/*.txt" file name pattern.
api api-hooking hook ntapi winapi windows
Last synced: 10 Apr 2025
https://github.com/print3m/malware-dev
Windows malware development C/C++ snippets.
malware malware-development ntapi winapi windows
Last synced: 14 Apr 2025
https://github.com/0xvpr/offensive-kernel-mode-c
A dedicated repository for exploring offensive kernel-mode techniques.
hacking malware-research ntapi offensive-security windows windows-kernel
Last synced: 22 Feb 2025
https://github.com/a5m1/fakewer
contains code for fakewer, dll sideloading poc / writeup
bypass c cpp crowdstrike dllsideloading edr learnc malware-poc ntapi poc sideloading wermgr windows
Last synced: 20 Feb 2025