Windows-Userland-Function-Hooking-of-NTQUERYSYSTEMINFORMATION KernelPhantom-010 · COMPLETED
Research-focused userland proof-of-concept demonstrating API hooking of NtQuerySystemInformation to analyze and manipulate SYSTEM_PROCESS_INFORMATION structures. The project explores DKOM-style process hiding techniques to better understand Windows internals, detection gaps, and blue-team countermeasures in controlled lab environments only.
github.com/KernelPhantom-010/Windows-Userland-Function-Hooking-of-NTQUERYSYSTEMINFORMATION · ★ 0 · Forks 0 · Size 4 KB
SUMMARY
Technologies 1
Scored 1
Observed 1
Practices 6
Evidence 1
Skips 0
COVERAGE
Analyzed 1 files · 2 commits · 0 API calls
TECHNOLOGIES & DEPTH
Markdown LANGUAGE Depth 70
1 files · PRODUCTION
PRACTICES
documentation · observedautomated_tests · absentcontinuous_integration · absentcontainerization · absentlinting · absentformatting · absent
ACTIVITY & OWNERSHIP
First commit 2026-02-22
Last commit 2026-04-04
Active months 2
Commits 2