0vercl0k / snapshotLinks
WinDbg extension written in Rust to dump the CPU / memory state of a running VM
☆127Updated last week
Alternatives and similar repositories for snapshot
Users that are interested in snapshot are comparing it to the libraries listed below
Sorting:
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆100Updated last month
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆121Updated last year
- ☆149Updated 2 years ago
- Static binary instrumentation for windows kernel drivers, to use with winafl☆81Updated last year
- Windows KASLR bypass using prefetch side-channel☆175Updated last year
- ☆160Updated last month
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆169Updated 5 months ago
- ☆85Updated 5 months ago
- Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book☆115Updated last year
- ☆74Updated last year
- Report and exploit of CVE-2023-36427☆90Updated 2 years ago
- Windows kernel debugger for Linux hosts running Windows under KVM/QEMU☆122Updated this week
- A KISS Rust crate to parse Windows kernel crash-dumps created by Windows & its debugger.☆42Updated last month
- Static Binary Instrumentation tool for Windows x64 executables☆207Updated 4 months ago
- ☆82Updated last week
- binary instrumentation, analysis, and patching framework☆100Updated last week
- ☆93Updated last year
- Report and exploit of CVE-2024-21305.☆38Updated 2 years ago
- ☆90Updated last year
- Windows Snapshot Fuzzer (SNAFUzz)☆37Updated last month
- PyKD DLLs for x86 and x64 platforms☆18Updated 2 years ago
- Modular and extensible library for Virtual Machine Introspection☆116Updated 3 weeks ago
- A set of LLVM and GCC based plugins that perform code obfuscation.☆138Updated 3 months ago
- ☆33Updated 2 years ago
- Virtual Trust Level (VTL 1) secure call tracing☆95Updated 5 months ago
- ☆64Updated 11 months ago
- This IDA plugin extends the functionality of the assembly and hex view. With this plugin, you can conveniently decode/decrypt/alter data …☆86Updated 8 months ago
- Abusing exceptions for code execution.☆113Updated 3 years ago
- A few examples of how to trap virtual memory access on Windows.☆40Updated last year
- bypassing intel txt's tboot integrity checks via coreboot shim☆82Updated 10 months ago