1111joe1111 / tuts
Reverse engineering tutorials
☆156Updated 7 years ago
Alternatives and similar repositories for tuts:
Users that are interested in tuts are comparing it to the libraries listed below
- idenLib - Library Function Identification [This project is not maintained anymore]☆392Updated 6 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆430Updated 6 years ago
- Another RTTI Parsing IDA plugin☆296Updated last year
- IDA Signsrch☆156Updated 9 years ago
- A project that aims to automatically devirtualize code that has been virtualized using x86virt☆126Updated 2 years ago
- Debug Child Process Tool (auto attach)☆282Updated last year
- PatchGuard Research☆295Updated 6 years ago
- Python scripts for reverse engineering.☆182Updated 3 years ago
- A collection of my IDA plugins☆134Updated 4 years ago
- Reverse engineering tool for virtualization wrappers☆136Updated last year
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆358Updated 5 years ago
- Name substitution plugin for IDA Pro☆146Updated 7 years ago
- A plugin based on IDAPython for a functional DWIM interface. Current development against most recent IDA is in the "persistence-refactor"…☆322Updated this week
- extending IDA's string navigation capabilities☆169Updated 4 years ago
- Open-source user-mode Anti-Anti-Debug plugin for x64dbg & cheatengine.☆200Updated 7 years ago
- Collection Of Anti-Debugging Tricks☆99Updated 9 years ago
- ☆225Updated 2 years ago
- ☆243Updated 10 years ago
- ☆116Updated 12 years ago
- An IDA Plugin that help analyzing module that use COM☆205Updated last year
- Research on Windows Kernel Executive Callback Objects☆285Updated 5 years ago
- abyss - augmentation of Hexrays decompiler output☆340Updated 2 years ago
- IFL - Interactive Functions List (plugin for IDA Pro)☆458Updated last month
- An analysis of the Warbird virtual-machine protection for the CI!g_pStore☆246Updated 7 years ago
- Persistent IAT hooking application - based on bearparser☆252Updated 2 years ago
- Simple VM based x86 PE (portable exectuable) protector.☆338Updated 10 years ago
- Hypervisor based tool for monitoring system register accesses.☆143Updated 6 years ago
- Static unpacker for FinSpy VM☆100Updated 3 years ago
- ☆177Updated 6 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆203Updated 2 years ago