ExpLife / awesome-windows-kernel-security-development
☆65Updated this week
Related projects: ⓘ
- ☆58Updated this week
- Windows 10 kernel and ntdll internal types, directly compatible with ida.☆50Updated 5 years ago
- This is a VmProtect integrated debugger, that will essentially allow you to disasm and debug vmp partially virtualized functions at the v…☆45Updated 7 years ago
- Test code only. Not reliable for actual use.☆60Updated 8 years ago
- ☆66Updated this week
- ☆79Updated this week
- An Attempt to Bypass Memory Scanners By Misusing the ntdll.dll "RT" Section.☆95Updated 8 years ago
- Analyze PatchGuard☆53Updated 6 years ago
- Publish☆53Updated 4 years ago
- LookDrvCode☆31Updated 10 years ago
- 内核级ARK工具。☆58Updated 8 years ago
- ☆21Updated this week
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub☆76Updated 12 years ago
- ☆69Updated this week
- All materials related https://resources.infosecinstitute.com/tutorial-building-reverse-engineering-simple-virtual-machine-protection/☆53Updated 7 years ago
- 大表哥的Syscall-Monitor☆33Updated 5 years ago
- createfile☆48Updated 8 years ago
- library, which help to describe or load and execute PE files.☆54Updated 11 years ago
- Windows anti-rootkit library☆37Updated 9 years ago
- IDA 7.0 meets watch view!☆41Updated 3 years ago
- PinVMP:虚拟化代码辅助分析工具☆151Updated 6 years ago
- ☆28Updated 5 years ago
- PoC for a taint based attack on VMProtect☆108Updated 5 years ago
- win10 pgContext dynamic dump (btc version)☆100Updated 4 years ago
- 代码虚拟化与自动化分析☆62Updated 6 years ago
- A debbuger based dbgeng for WIndows☆35Updated 7 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆33Updated 2 months ago
- Plain project for usege with github/zer0mem/common.git☆48Updated 10 years ago
- Lightweight x86 and x64 instructions disassembler☆29Updated 6 years ago