BehroozAbbassi / sdkffi
A code parser for C-Style header files that lets you to parse function's prototypes and data types used in their parameters.
☆93Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for sdkffi
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆74Updated 4 years ago
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆71Updated 4 years ago
- Resolve DOS MZ executable symbols at runtime☆93Updated 2 years ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆57Updated 2 months ago
- clone of armadillo patched for windows☆46Updated 2 weeks ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆69Updated last year
- The Windbg extension that implements commands helpful to study Hyper-V on Intel processors.☆129Updated 3 weeks ago
- ☆131Updated last year
- This is a simple driver with x64 inline assembly☆52Updated 4 years ago
- Abusing exceptions for code execution.☆106Updated last year
- ☆43Updated 2 years ago
- Header only wrapper around Hex-Rays API in C++20.☆151Updated 2 years ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆58Updated 3 months ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆60Updated last year
- Using Zydis and LLVM to lift unsupported instructions to LLVM-IR☆27Updated 3 years ago
- Documenting system information classes and their uses☆50Updated 3 years ago
- Parser for Microsoft Program Database (PDB) files☆74Updated 4 years ago
- A Python script to download PDB files associated with a Portable Executable (PE)☆115Updated 3 months ago
- IOCTLpus can be used to make DeviceIoControl requests with arbitrary inputs (with functionality somewhat similar to Burp Repeater).☆84Updated 2 years ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆124Updated last year
- Tool to dump UEFI runtime drivers implementing runtime services for Windows☆90Updated 3 years ago
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated last year
- Efficient general mixed boolean-arithmetic (MBA) simplifier☆73Updated this week
- Hyper-V related resources☆31Updated 7 months ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆44Updated 4 years ago
- Enumerate user mode shared memory mappings on Windows.☆114Updated 3 years ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆114Updated 2 months ago
- Standalone program to download PDB Symbol files for debugging without WDK☆73Updated 5 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆51Updated 3 years ago