DebugPrivilege / InsightEngineering
Hardcore Debugging
☆878Updated 3 weeks ago
Alternatives and similar repositories for InsightEngineering
Users that are interested in InsightEngineering are comparing it to the libraries listed below
Sorting:
- Living Off The Land Drivers☆1,172Updated this week
- ☆1,646Updated 8 months ago
- PoCs and tools for investigation of Windows process execution techniques☆916Updated 2 months ago
- Important notes and topics on my journey towards mastering Windows Internals☆383Updated last year
- AV/EDR Evasion Lab for Training & Learning Purposes☆1,248Updated 2 weeks ago
- Win32 and Kernel abusing techniques for pentesters☆951Updated last year
- ☆572Updated 2 weeks ago
- Spartacus DLL/COM Hijacking Toolkit☆1,041Updated last year
- A tool that shows detailed information about named pipes in Windows☆642Updated 6 months ago
- A set of fully-undetectable process injection techniques abusing Windows Thread Pools☆1,098Updated last year
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆744Updated last year
- Centralized resource for listing and organizing known injection techniques and POCs☆489Updated 3 weeks ago
- The multi-platform memory acquisition tool.☆790Updated 5 months ago
- A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the …☆1,653Updated 6 months ago
- Operating System Design Review: A systemic analysis of modern systems architecture☆312Updated 2 months ago
- Kernel mode WinDbg extension and PoCs for token privilege investigation.☆861Updated 3 months ago
- A modern 32/64-bit position independent implant template☆1,210Updated last month
- ☆2,097Updated 2 years ago
- Event Tracing For Windows (ETW) Resources☆379Updated 7 months ago
- The Definitive Guide To Process Cloning on Windows☆476Updated last year
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆388Updated last week
- RPC Monitor tool based on Event Tracing for Windows☆355Updated 8 months ago
- View ETW Provider manifest☆482Updated 6 months ago
- Dynamic unpacker based on PE-sieve☆730Updated 2 months ago
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆753Updated this week
- Useful scripts for WinDbg using the debugger data model☆412Updated last year
- Different learning materials☆226Updated 2 months ago
- ☆490Updated last year
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆623Updated 2 months ago
- Web-based tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the …☆343Updated 2 weeks ago