Category : windows-kernel

So afaik IA32_LSTAR is supposed to hold the address of KiSystemCall64/KiSystemCall64Shadow, so right before a syscall was made on ntdll I dumped it, and set a breakpoint on it (KiSystemCall64Shadow) upon tracing with p on windbg I get a bugcheck(DOUBLE_FAULT), why is that? I should mention that this whole process was inside a VM so ..

Read more

Windows connects to the intranet wireless router and then turns on the hotspot. How to intercept all the traffic of the client connected to the hotspot, and modify it before forwarding it. ! ! ! The traffic accessing the intranet server through my hotspot should also be intercepted! ! ! Option 1: Hook NDIS requires ..

Read more

Linux Kernel in its primitive form was first written in 1991; Windows NT kernel (differ from Win9x Kernel which was based on DOS) purportedly began development in 1990. I think OS design can’t entirely be "original" in several senses: good design will always influence later designs. new features are getting added or replacing some older ..

Read more