HACKE-RC / peritux
A PE parser written in C++ which does not uses OOP. Helpful if you want to learn about PE parsing.
☆16Updated 2 years ago
Alternatives and similar repositories for peritux
Users that are interested in peritux are comparing it to the libraries listed below
Sorting:
- ☆25Updated 6 months ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆26Updated last year
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆36Updated last year
- Extract data of TTD trace file to a minidump☆28Updated last year
- Implementation of Advanced Module Stomping and Heap/Stack Encryption☆10Updated last year
- Process Injection without R/W target memory and without creating a remote thread☆18Updated 3 years ago
- ☆46Updated last month
- A journal for $6,000 Riot Vanguard bounty.☆63Updated last year
- ☆29Updated 2 months ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆18Updated last year
- ☆28Updated 2 years ago
- A few examples of how to trap virtual memory access on Windows.☆30Updated 4 months ago
- Progress of learning kernel development☆14Updated 2 years ago
- A VMWare logger using built-in backdoor.☆29Updated 7 months ago
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆27Updated 9 months ago
- Neutralize KEPServerEX anti-debugging techniques☆31Updated 2 years ago
- call gates as stable comunication channel for NT x86 and Linux x86_64☆31Updated last year
- Listing UDP connections with remote address without sniffing.☆29Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆19Updated 2 months ago
- A Practical example of ELAM (Early Launch Anti-Malware)☆32Updated 3 years ago
- ☆26Updated 2 months ago
- This repo for Windows x32-x64 Kernel/Driver/User Mode Exploitation writeups and exploits☆23Updated last year
- Research of modifying exported function names at runtime (C/C++, Windows)☆17Updated 11 months ago
- A years-old exploit of a local EoP vulnerability in Kingsoft Antivirus KWatch Driver version 2009.3.17.77.☆38Updated 3 years ago
- ☆24Updated last year
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆34Updated last year
- A minimalistic logger for Windows Kernel Drivers.☆23Updated last year
- A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using Instrumentation…☆28Updated last year
- A post-processing script for TinyTracer☆38Updated 2 years ago