ntdll topic
SyscallDumper
Dump system call codes, names, and offsets from Ntdll.dll
IsDebuggerPresent
Debugger checks in 3 ways
LoaderWatch
Windows 10 PE image loader (LDR) NTDLL component toolbox
WinNativeIO
Using Undocumented NTDLL Functions to Read/Write/Delete File
hades
Go shellcode loader that combines multiple evasion techniques
inline-syscall
Inline syscalls made for MSVC supporting x64 and WOW64
Process-Protection
Basic windows process protection written in Go, using the NtSetInformationProcess API
DefCollection
This repository houses an extensive collection of .def files, which are header files containing enumerations of entry points for various native libraries. These entry points serve as essential referen...
CodeInjection
Collection of shellcode injection and execution techniques