Colton1skees / KParser
.NET Tool for parsing and utilizing x86 semantics defined in K. It currently features a WIP symbolic expression generator for VTIL.
☆16Updated 3 years ago
Alternatives and similar repositories for KParser:
Users that are interested in KParser are comparing it to the libraries listed below
- Experiment building lifting-bits dependencies with pure CMake. Migrated to:☆21Updated 3 months ago
- A set of small utilities, helpers for PIN tracers☆31Updated last year
- Windows Minidump loader for Ghidra☆19Updated 2 years ago
- x64dbg python3 plugin☆21Updated last year
- 🧶 The Win32 usermode threading library with UMS/fibers/threads support☆30Updated 5 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Reverse engineered API for Microsoft's Time Travel Debugger☆32Updated 9 months ago
- A Windows API hooking library !☆31Updated 2 years ago
- Simple x64dbg plugin to show registers on every step.☆16Updated 5 years ago
- Standalone API for Binary Ninja's LLIL☆18Updated 5 months ago
- Small project to generate fake DLLs based on an executable's import table☆23Updated 4 years ago
- A small library to extend the functionality of GetModuleHandle and GetProcAddress to other processes☆17Updated 4 years ago
- Personal curation of Clang/LLVM patches.☆13Updated 3 years ago
- A common set of helpers used across VTIL toolchain. Moved into -->☆20Updated 4 years ago
- ☆30Updated 3 years ago
- A Binary Ninja plugin to deobfuscate Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆24Updated 5 months ago
- Symbolic expression simplifier used across VTIL toolchain. Moved into -->☆24Updated 4 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆36Updated 3 years ago
- Lightweight x86-64 disassembling library☆40Updated 2 years ago
- Virtual machine with a custom instruction set in C☆16Updated 6 years ago
- Input-output driver☆23Updated last year
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆32Updated 3 years ago
- executing JS from x86 code☆27Updated 5 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆28Updated 3 years ago
- Nasha is a Virtual Machine for .NET files and its runtime was made in C++/CLI☆78Updated 3 years ago
- Plugin for x64dbg to disable parallel loading of dependencies☆19Updated 2 years ago
- A reflexive driver loader to bypass Windows DSE (featuring a custom PE loader)☆39Updated 6 years ago
- CTF writeups☆35Updated 2 months ago