Colton1skees / KParserLinks
.NET Tool for parsing and utilizing x86 semantics defined in K. It currently features a WIP symbolic expression generator for VTIL.
☆16Updated 4 years ago
Alternatives and similar repositories for KParser
Users that are interested in KParser are comparing it to the libraries listed below
Sorting:
- A set of small utilities, helpers for PIN tracers☆33Updated last year
- A collection of Binary Ninja plugins☆25Updated 3 years ago
- Experiment building lifting-bits dependencies with pure CMake. Migrated to:☆22Updated 8 months ago
- Runtime smm module loader☆33Updated 2 years ago
- x86_64, PE32+, FAT32 bootloader☆25Updated 3 years ago
- Reverse engineered API for Microsoft's Time Travel Debugger☆34Updated last year
- Simple x64dbg plugin to show registers on every step.☆16Updated 5 years ago
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- A console debugger using DbgX and Terminal.Gui☆30Updated 2 years ago
- Standalone API for Binary Ninja's LLIL☆18Updated 10 months ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- 🧶 The Win32 usermode threading library with UMS/fibers/threads support☆32Updated 5 years ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆60Updated 10 months ago
- LLVM based devirtualization PoC’s.☆20Updated 3 years ago
- Small project to generate fake DLLs based on an executable's import table☆23Updated 5 years ago
- Input-output driver☆27Updated 3 months ago
- A Windows API hooking library !☆31Updated 2 years ago
- ☆30Updated 3 years ago
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago
- Diff plugin for x64dbg☆31Updated 4 years ago
- A driver to implement IOCTL hooking☆24Updated 3 years ago
- Practical Reverse Engineering book exercises☆9Updated 4 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 3 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- Windows Minidump loader for Ghidra☆29Updated 2 years ago
- Windows x86 Hardware Breakpoint class for Windows >Vista☆22Updated 8 years ago
- An Obfuscation Approach using Probabilistic Control Flows☆32Updated 8 years ago
- AMx64 is a simulated 64-bit environment that can interpret nasm-like asm code. It allows a usage of different 64-bit registers and 64-bit…☆23Updated last year
- A thin introspection hypervisor framework that allows for low level resource manipulation.☆13Updated last year
- Binary Ninja plugin to perform automated analysis of Windows drivers☆16Updated 5 years ago