Incident Response & Digital Forensics Debugging Extension
☆393Dec 11, 2018Updated 7 years ago
Alternatives and similar repositories for SwishDbgExt
Users that are interested in SwishDbgExt are comparing it to the libraries listed below
Sorting:
- WinDBG Anti-RootKit Extension☆646Jul 29, 2020Updated 5 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆437Aug 22, 2018Updated 7 years ago
- A windbg extension, extracting token related contents☆41Dec 23, 2020Updated 5 years ago
- [ARCHIVED] mov rax, ${Thalium/IceBox}; jmp rax;☆76Jun 8, 2019Updated 6 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆109Apr 24, 2020Updated 5 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆635Jul 7, 2017Updated 8 years ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆411Dec 27, 2024Updated last year
- Hyper-V Research is trendy now☆199May 6, 2024Updated last year
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆748Jun 26, 2017Updated 8 years ago
- ☆30May 23, 2017Updated 8 years ago
- PatchGuard Research☆304Oct 6, 2018Updated 7 years ago
- kernel pool windbg extension☆83Jul 23, 2015Updated 10 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆415Jan 2, 2020Updated 6 years ago
- Windows RPC Python fuzzer☆164Nov 14, 2017Updated 8 years ago
- ☆14Jan 10, 2017Updated 9 years ago
- Elevation of privilege detector based on HyperPlatform☆123Mar 5, 2017Updated 9 years ago
- Any useful windbg plugins I've written.☆117Apr 10, 2018Updated 7 years ago
- A command tree based on commands and extensions for Windows Kernel Debugging.☆112Jul 10, 2020Updated 5 years ago
- Recon 2015 Presentation from Alex Ionescu☆250Jan 27, 2016Updated 10 years ago
- pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers☆895Jun 18, 2025Updated 9 months ago
- 0CCh Windbg extension: include some useful commands☆114Aug 1, 2023Updated 2 years ago
- reverse engineering extension plugin for windbg☆122Sep 30, 2019Updated 6 years ago
- ☆14Jun 24, 2017Updated 8 years ago
- ☆408Mar 1, 2017Updated 9 years ago
- Sample extensions, scripts, and API uses for WinDbg.☆814Dec 27, 2025Updated 2 months ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆213Oct 5, 2025Updated 5 months ago
- The history of Windows Internals via symbols.☆181Nov 4, 2021Updated 4 years ago
- Windows Object Explorer 64-bit☆1,893Mar 9, 2026Updated last week
- Windbg extension to find PatchGuard pages☆123Jun 24, 2014Updated 11 years ago
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆466Apr 17, 2018Updated 7 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆372Jan 8, 2020Updated 6 years ago
- Various extensions for WinDbg☆174Aug 26, 2014Updated 11 years ago
- codes for my blog post: https://secrary.com/Random/InstrumentationCallback/☆182Nov 30, 2017Updated 8 years ago
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆389Sep 21, 2023Updated 2 years ago
- This is a sample that shows how to leverage SetThreadContext for DLL injection☆85Sep 4, 2017Updated 8 years ago
- Universal PatchGuard and Driver Signature Enforcement Disable☆862Mar 29, 2019Updated 6 years ago
- Demos presented on Hackerfest 2015☆14Nov 9, 2015Updated 10 years ago
- Hypervisor based tool for monitoring system register accesses.☆154Sep 13, 2018Updated 7 years ago
- Translates WinDbg "dt" structure dump to a C structure☆133Oct 16, 2016Updated 9 years ago