0vercl0k / kdmp-parser-rsLinks
A KISS Rust crate to parse Windows kernel crash-dumps created by Windows & its debugger.
☆42Updated last month
Alternatives and similar repositories for kdmp-parser-rs
Users that are interested in kdmp-parser-rs are comparing it to the libraries listed below
Sorting:
- Report and exploit of CVE-2024-21305.☆38Updated 2 years ago
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆100Updated last month
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆41Updated 2 years ago
- Generate a PDB file given the old PDB file and an address mapping☆51Updated 6 months ago
- Remove WPP calls from hexrays decompiled code☆56Updated last week
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆130Updated last week
- A minimalistic logger for Windows Kernel Drivers.☆25Updated last year
- ☆93Updated last year
- Report and exploit of CVE-2023-36427☆90Updated 2 years ago
- Different tools for Microsoft Hyper-V researching☆64Updated this week
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆48Updated 3 years ago
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆79Updated 3 years ago
- Abusing exceptions for code execution.☆113Updated 3 years ago
- Helper idapython code for reversing kmdf drivers☆74Updated 3 years ago
- PDB Rewriting Rust Library☆26Updated last year
- A set of LLVM and GCC based plugins that perform code obfuscation.☆138Updated 3 months ago
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆71Updated 5 months ago
- ☆31Updated 3 weeks ago
- ☆149Updated 2 years ago
- Hyper-V related resources☆31Updated last year
- A few examples of how to trap virtual memory access on Windows.☆40Updated last year
- Windows Minidump loader for Ghidra☆29Updated 3 years ago
- Extract data of TTD trace file to a minidump☆31Updated 2 years ago
- Rust library for lifting raw binary data to LLVM IR☆63Updated 6 months ago
- ☆49Updated 5 years ago
- A simple but useful project maybe help you reverse Windows.☆41Updated last year
- Rust bindings for VMProtect.☆27Updated last year
- This utility allows you to lock every available memory regions of an arbitrary process into its working set.☆69Updated 2 years ago
- Playing with LLVM passes☆40Updated 2 years ago
- IDA plugin to recover source code from panic information on rust☆17Updated 9 months ago