windows-internals topic
WindowsInternals
Yet another windows internals repo
pipe-intercept
Intercept Windows Named Pipes communication using Burp or similar HTTP proxy tools
TangledWinExec
PoCs and tools for investigation of Windows process execution techniques
wnfun
WNF Utilities 4 Newbies (WNFUN)
NtTools
Some random system tools for Windows
Dreadnought
PoC for detecting and dumping code injection (built and extended on UnRunPE)
ALPC-Example
An example of a client and server using Windows' ALPC functions to send and receive data.
conference_talks
Slides from various conference talks
DpcWait
Driver demonstrating how to register a DPC to asynchronously wait on an object
ProcessInfo
A class to gather information about a process, its threads and modules.