0vercl0k / windbg-scripts
A bunch of JavaScript extensions for WinDbg.
☆328Updated 3 months ago
Alternatives and similar repositories for windbg-scripts:
Users that are interested in windbg-scripts are comparing it to the libraries listed below
- Toy scripts for playing with WinDbg JS API☆223Updated 7 months ago
- Bindings for Microsoft WinDBG TTD☆216Updated last year
- Research on Windows Kernel Executive Callback Objects☆284Updated 5 years ago
- The Windows Library for Intel Process Trace (WinIPT) is a project that leverages the new Intel Processor Trace functionality exposed by W…☆377Updated last year
- An IDA Plugin that help analyzing module that use COM☆204Updated last year
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆427Updated 6 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆594Updated 7 years ago
- Windows Kernel Drivers fuzzer☆336Updated 7 years ago
- My personal cheat sheet for using WinDbg for kernel debugging☆404Updated 4 months ago
- A plugin based on IDAPython for a functional DWIM interface. Current development against most recent IDA is in the "persistence-refactor"…☆322Updated this week
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆135Updated 2 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆359Updated 5 years ago
- Hyper-V Research is trendy now☆158Updated this week
- Have fun with the LowFragmentationHeap☆235Updated 4 years ago
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆431Updated 6 years ago
- Time Travel Debugging IDA plugin☆567Updated 8 months ago
- ☆223Updated 2 years ago
- idenLib - Library Function Identification [This project is not maintained anymore]☆391Updated 5 years ago
- HexRays ctree visualization plugin☆394Updated 5 months ago
- The history of Windows Internals via symbols.☆177Updated 3 years ago
- An IDA Python script to extract information from string constants.☆308Updated last year
- Dump of win32k POCs for bugs I've found☆370Updated 2 years ago
- IDA Signsrch☆156Updated 9 years ago
- Integrate Ghidra's decompiler as an Ida plugin☆426Updated 8 months ago
- Devirtualize Virtual Calls☆115Updated 2 years ago
- Idapython script to carve binary for internal RPC structures☆231Updated 11 months ago
- PEDA-like debugger UI for WinDbg☆202Updated 11 months ago
- Canadian Furious Beaver is a ProcMon-style tool designed only for capturing IRPs sent to any Windows driver.☆315Updated 11 months ago
- PoC of modifying HexRays AST☆254Updated 5 years ago
- IDA Pro plugin to assist with complex graphs☆314Updated last year