IOActive / kmdf_reLinks
Helper idapython code for reversing kmdf drivers
☆74Updated 3 years ago
Alternatives and similar repositories for kmdf_re
Users that are interested in kmdf_re are comparing it to the libraries listed below
Sorting:
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆75Updated last year
- ☆49Updated 5 years ago
- ☆41Updated 4 years ago
- ☆12Updated 3 years ago
- Command like tool to print mitigation flags for running processes in a memory dump☆47Updated 5 years ago
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆99Updated 5 years ago
- This utility allows you to lock every available memory regions of an arbitrary process into its working set.☆69Updated 2 years ago
- IOCTLpus can be used to make DeviceIoControl requests with arbitrary inputs (with functionality somewhat similar to Burp Repeater).☆94Updated 4 years ago
- ☆12Updated 5 years ago
- ☆148Updated 2 years ago
- A simple but useful project maybe help you reverse Windows.☆41Updated last year
- ☆50Updated 3 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆37Updated 4 years ago
- A fast execution trace symbolizer for Windows.☆130Updated last year
- Tools made for my Hyper-V blog series @ https://foxhex0ne.blogspot.com/☆57Updated 5 years ago
- ☆41Updated 5 years ago
- clone of armadillo patched for windows☆48Updated last year
- ☆163Updated 4 years ago
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆100Updated 2 weeks ago
- A collection of my scripts for research☆12Updated 5 months ago
- Extract data of TTD trace file to a minidump☆31Updated 2 years ago
- windbg plugin for win32k debugging☆75Updated 6 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Updated 2 years ago
- ☆34Updated 4 years ago
- Winbindex bot to pull in binaries for specific releases☆48Updated 2 years ago
- PyKD DLLs for x86 and x64 platforms☆18Updated 2 years ago
- Python bindings for the Microsoft Hypervisor Platform APIs.☆80Updated 6 years ago
- IDA script for vmprotect Windows Api address decoder☆53Updated 4 years ago
- Master list of all my vulnerability discoveries. Mostly 3rd party kernel drivers.☆49Updated 5 years ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆104Updated 5 years ago