0vercl0k / windbg-scriptsLinks
A bunch of JavaScript extensions for WinDbg.
☆343Updated 6 months ago
Alternatives and similar repositories for windbg-scripts
Users that are interested in windbg-scripts are comparing it to the libraries listed below
Sorting:
- Toy scripts for playing with WinDbg JS API☆232Updated 11 months ago
- Bindings for Microsoft WinDBG TTD☆225Updated last year
- Research on Windows Kernel Executive Callback Objects☆288Updated 5 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆605Updated 7 years ago
- Have fun with the LowFragmentationHeap☆241Updated 4 years ago
- My personal cheat sheet for using WinDbg for kernel debugging☆423Updated 2 months ago
- An IDA Plugin that help analyzing module that use COM☆215Updated last year
- A Windows kernel dump C++ parser library with Python 3 bindings.☆201Updated 11 months ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆435Updated 6 years ago
- A plugin based on IDAPython for a functional DWIM interface. Current development against most recent IDA is in the "persistence-refactor"…☆324Updated this week
- Windows Kernel Drivers fuzzer☆349Updated 8 years ago
- Hyper-V Research is trendy now☆163Updated 2 weeks ago
- The Windows Library for Intel Process Trace (WinIPT) is a project that leverages the new Intel Processor Trace functionality exposed by W…☆384Updated 2 years ago
- The history of Windows Internals via symbols.☆178Updated 3 years ago
- Time Travel Debugging IDA plugin☆587Updated 11 months ago
- Idapython script to carve binary for internal RPC structures☆233Updated last year
- ☆227Updated 2 years ago
- IFL - Interactive Functions List (plugin for IDA Pro)☆462Updated 4 months ago
- Canadian Furious Beaver is a ProcMon-style tool designed only for capturing IRPs sent to any Windows driver.☆322Updated last year
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆364Updated 5 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆300Updated 6 years ago
- idenLib - Library Function Identification [This project is not maintained anymore]☆395Updated 6 years ago
- Integrate Ghidra's decompiler as an Ida plugin☆426Updated last year
- HexRays ctree visualization plugin☆412Updated 9 months ago
- IDA Signsrch☆156Updated 9 years ago
- PoC of modifying HexRays AST☆257Updated 5 years ago
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆452Updated 7 years ago
- PEDA-like debugger UI for WinDbg☆204Updated last year
- Devirtualize Virtual Calls☆115Updated 3 years ago
- Windows NT x64 syscall fuzzer☆607Updated last year