A Cross-Platform C++ parser library for Windows user minidumps with Python 3 bindings.
☆226Oct 3, 2025Updated 4 months ago
Alternatives and similar repositories for udmp-parser
Users that are interested in udmp-parser are comparing it to the libraries listed below
Sorting:
- A Windows kernel dump C++ parser library with Python 3 bindings.☆213Oct 5, 2025Updated 4 months ago
- Time Travel Debugging IDA plugin☆592Jun 27, 2024Updated last year
- A Rust crate for parsing Windows user minidumps.☆41May 1, 2024Updated last year
- .lib file for linking against the NT CRT☆19Mar 18, 2022Updated 3 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆657Jan 28, 2025Updated last year
- Header only wrapper around Hex-Rays API in C++20.☆168Dec 25, 2024Updated last year
- Cross-platform tool that allows browsing and extracting C and C++ type declarations from PDB files.☆360Feb 9, 2025Updated last year
- Bindings for Microsoft WinDBG TTD☆235Aug 5, 2023Updated 2 years ago
- ☆149Jun 5, 2023Updated 2 years ago
- A library to develop kernel level Windows payloads for post HVCI era☆485May 18, 2021Updated 4 years ago
- IDA Pro plugin to make bitfield accesses easier to grep☆254Aug 3, 2025Updated 6 months ago
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆32Jul 9, 2021Updated 4 years ago
- ☆31Jan 12, 2022Updated 4 years ago
- Virtual Tagger Plugin is a Cutter plugin that significantly improves handling and analysis of vtables and virtual functions☆16Mar 23, 2023Updated 2 years ago
- ☆13Sep 25, 2023Updated 2 years ago
- PDBRipper is a utility for extract an information from PDB-files.☆880Updated this week
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆268Aug 31, 2022Updated 3 years ago
- C++ Exceptions in Windows Drivers☆221Dec 21, 2020Updated 5 years ago
- Analyze patches in a process☆259Jul 28, 2021Updated 4 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆234Apr 2, 2022Updated 3 years ago
- Port of MBA Solver SiMBA to C/C++ (MBA deobfuscation in real world applications)☆107Nov 5, 2025Updated 3 months ago
- Virtual Machine Introspection, Tracing & Debugging☆596Feb 22, 2022Updated 4 years ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,278Feb 14, 2026Updated 2 weeks ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Apr 4, 2020Updated 5 years ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆258Sep 1, 2022Updated 3 years ago
- ☆423Jan 1, 2025Updated last year
- Yet another variant of Process Hollowing☆458Jul 31, 2025Updated 7 months ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆149Mar 2, 2023Updated 3 years ago
- Experimental imgui app framework for rapid prototyping.☆14Aug 10, 2025Updated 6 months ago
- Universal x86/x64 VMProtect 2.0-3.X Import fixer☆20Dec 29, 2021Updated 4 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆51Mar 11, 2021Updated 4 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆240Nov 6, 2019Updated 6 years ago
- Open-source symbolic execution framework: https://maat.re☆648Feb 22, 2026Updated last week
- Examples of leaking Kernel Mode information from User Mode on Windows☆634Jul 7, 2017Updated 8 years ago
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆121May 1, 2024Updated last year
- ☆17Oct 31, 2022Updated 3 years ago
- Small PoC of using a Microsoft signed executable as a lolbin.☆141Feb 27, 2023Updated 3 years ago
- Windows PDB parser for kernel-mode environment.☆107Jun 7, 2025Updated 8 months ago
- A wrapper library around native windows sytem APIs☆448Feb 2, 2021Updated 5 years ago