0vercl0k / windbg-scriptsLinks
A bunch of JavaScript extensions for WinDbg.
☆357Updated last year
Alternatives and similar repositories for windbg-scripts
Users that are interested in windbg-scripts are comparing it to the libraries listed below
Sorting:
- Toy scripts for playing with WinDbg JS API☆242Updated last year
- My personal cheat sheet for using WinDbg for kernel debugging☆446Updated 8 months ago
- Have fun with the LowFragmentationHeap☆252Updated 4 years ago
- An IDA Plugin that help analyzing module that use COM☆229Updated 2 months ago
- The Windows Library for Intel Process Trace (WinIPT) is a project that leverages the new Intel Processor Trace functionality exposed by W…☆402Updated 2 years ago
- Bindings for Microsoft WinDBG TTD☆233Updated 2 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆438Updated 7 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆624Updated 8 years ago
- Windows Kernel Drivers fuzzer☆376Updated 8 years ago
- Idapython script to carve binary for internal RPC structures☆239Updated last year
- A plugin based on IDAPython for a functional DWIM interface. Current development against most recent IDA is in the "persistence-refactor"…☆329Updated 3 months ago
- Hyper-V Research is trendy now☆177Updated last week
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆212Updated 5 years ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆213Updated 2 months ago
- Time Travel Debugging IDA plugin☆593Updated last year
- awesome windbg extensions☆350Updated 6 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆370Updated 5 years ago
- Research on Windows Kernel Executive Callback Objects☆312Updated 5 years ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆146Updated 2 years ago
- CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.☆334Updated last year
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆461Updated 7 years ago
- ☆230Updated 3 years ago
- Hyper-V Research is trendy now☆190Updated last year
- Dump of win32k POCs for bugs I've found☆382Updated 3 years ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆184Updated 5 years ago
- Hyper-V scripts☆135Updated last month
- Tools for instrumenting Windows Defender's mpengine.dll☆308Updated 7 years ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆437Updated 8 months ago
- HexRays ctree visualization plugin☆430Updated last year
- A collection of my IDA plugins☆134Updated 5 years ago