3intermute / hvICE
hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer
☆29Updated 9 months ago
Alternatives and similar repositories for hvICE:
Users that are interested in hvICE are comparing it to the libraries listed below
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆33Updated last year
- Playing with LLVM passes☆36Updated last year
- AMD SVM hypervisor rootkit proof of concept☆44Updated last year
- A thin introspection hypervisor framework that allows for low level resource manipulation.☆13Updated last year
- Custom instruction length for hex-rays☆17Updated last month
- IFL - Interactive Functions List (plugin for Binary Ninja)☆22Updated 7 months ago
- Binary Ninja plugin to perform automated analysis of Windows drivers☆17Updated 5 years ago
- Simple Intel VT-x type-2 hypervisor for 64-bit Linux.☆17Updated 4 years ago
- Rust library for lifting raw binary data to LLVM IR☆44Updated this week
- Symbolic executor for Binary Ninja's MLIL☆22Updated 4 months ago
- IDA's Lumina feature, reimplemented for Binary Ninja, with new error handeling!☆37Updated 2 months ago
- Set of plugins and library for dynamic pdb generation and synchronisation☆35Updated 9 months ago
- PDB Rewriting Rust Library☆23Updated 9 months ago
- Disassembler for Zeus VM custom instruction set☆27Updated last year
- Binary Ninja plugin for automating VMProtect analysis☆58Updated 2 years ago
- Python bindings for BochsCPU☆35Updated this week
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- Plugin for x64dbg to disable parallel loading of dependencies☆19Updated 2 years ago
- SPI flash read MitM attack PoC☆37Updated 2 years ago
- LLVM based devirtualization PoC’s.☆20Updated 3 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Hyper-V related resources☆30Updated 10 months ago
- ☆45Updated 4 years ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆58Updated 5 months ago
- Symbolic execution for RISC-V machine code based on the formal LibRISCV ISA model☆43Updated last month
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆58Updated 7 months ago
- short crackme for Windows XP SP3 (32 bit version). ring0 stuff. IMO very fun x-)☆23Updated last year
- Native Rust bindings for @horsicq's Detect-It-Easy☆13Updated 3 weeks ago
- Unicorn Engine port for UEFI firmware☆46Updated 2 months ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago