0xlane / pe-sign
A cross-platform rust no-std library for verifying and extracting signature information from PE files.
☆51Updated 4 months ago
Alternatives and similar repositories for pe-sign:
Users that are interested in pe-sign are comparing it to the libraries listed below
- ☆53Updated 2 years ago
- VT Hook☆46Updated 9 months ago
- Enum and Remove Hook in Windows☆37Updated 4 months ago
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆77Updated 2 weeks ago
- ☆27Updated last year
- an encryption library designed for Windows kernel and driver programming☆119Updated last year
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆93Updated 2 years ago
- 这篇文章的目的是介绍一款实验性项目基于COM命名管道或者Windows Hyper-V虚拟机Vmbus通道实现的运行在uefi上的windbg调试引擎开发心得☆41Updated 9 months ago
- a monitoring windows driver calls kernel api tools☆103Updated 9 months ago
- Emulate Drivers in RING3 with self context mapping or unicorn☆29Updated 3 months ago
- A series of methods used to detect kernel shellcode for tencent game safe race 2024☆36Updated 11 months ago
- ☆42Updated 2 months ago
- Static user/kernel mode library that allows access to all functions and global variables by extracting offsets from the PDB☆86Updated last week
- ☆69Updated 3 years ago
- Process Injection via Component Object Model (COM) IRundown::DoCallback().☆58Updated 2 years ago
- InstDrv v2☆35Updated 8 months ago
- query-pdb is a server-side software for parsing PDB files. The software provides PDB online parsing service.☆150Updated 6 months ago
- Virtualization Simply Code☆20Updated 2 years ago
- Win7内核私有符号结构转储☆68Updated 3 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆105Updated 2 years ago
- ☆35Updated 6 months ago
- intel vt-x hypervisor ept☆25Updated 4 years ago
- Static Library For Windows Drivers☆33Updated last month
- windows kernel pagehook☆39Updated 2 years ago
- Windows kernel drivers simple HTTP library for modern C++☆42Updated 6 years ago
- Hook system calls, context switches, page faults and more.☆34Updated 5 years ago
- Intel Virtualization Technology demo☆65Updated 8 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆107Updated 2 years ago
- ☆130Updated 2 years ago
- ☆16Updated 5 months ago