DidierStevens / AnalyzePESig
☆16Updated last year
Alternatives and similar repositories for AnalyzePESig:
Users that are interested in AnalyzePESig are comparing it to the libraries listed below
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 7 years ago
- ☆22Updated 3 years ago
- ☆21Updated 3 years ago
- A collection of empty MSVC projects, compiled using various versions and configurations of Visual Studio.☆30Updated 6 months ago
- ☆33Updated 7 years ago
- Demos for Presentation on Windows Runtime Security☆70Updated 6 years ago
- ☆33Updated 3 years ago
- Adding exceptions to Microsoft's Control Flow Guard (CFG)☆59Updated 8 years ago
- This is a simple tool to dump all the reparse points on an NTFS volume.☆31Updated 4 years ago
- ☆28Updated 4 years ago
- Scripts to prepare Windows system for debugging.☆30Updated 4 years ago
- ☆14Updated 7 years ago
- Windows 10 UAC bypass PoC using LaunchInfSection☆34Updated 6 years ago
- Utilities for working with vivisect☆25Updated this week
- My conference presentations and publications☆26Updated 2 years ago
- APIInfo Plugin (x86) - A Plugin For x64dbg☆49Updated 6 years ago
- A simple API monitor for Windbg☆62Updated 7 years ago
- Authenticode-parser is a simple C library for Authenticode format parsing using OpenSSL.☆16Updated 10 months ago
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆27Updated 2 years ago
- This repository contains some tools that I have written in the past☆28Updated last year
- Given delta compressed PE files, find download links for them on the Microsoft Symbol Server. No source PE file or VirusTotal access requ…☆26Updated 11 months ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 6 years ago
- ☆30Updated 8 years ago
- Rekall Memory Forensic Framework☆29Updated 5 years ago
- IDA plugin to explore and browse tags☆53Updated 5 years ago
- IDAPython scripts☆15Updated 7 years ago
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆51Updated 2 years ago
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆24Updated last year