MeeSong / Reverse-Engineering
Reverse Engineering
☆13Updated 7 years ago
Alternatives and similar repositories for Reverse-Engineering:
Users that are interested in Reverse-Engineering are comparing it to the libraries listed below
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆42Updated last year
- Some eternal WIP stuff :)☆15Updated this week
- Static Library For Windows Drivers☆33Updated last month
- Analyze PatchGuard☆54Updated 6 years ago
- Debug Print viewer (user and kernel)☆65Updated last year
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆28Updated 2 years ago
- Simplifies the Windows Kernel APIs by making the existing function easier to use, and extends them by creating functions that could possi…☆26Updated 5 months ago
- A simple kernel mode driver that hooks some values at the KUSER_SHARED_DATA structure.☆26Updated 5 years ago
- x64 assembler library☆31Updated 8 months ago
- Shareds for kernel developement☆27Updated 11 years ago
- A slightly safer io access library☆13Updated 3 years ago
- An example code of CiGetCertPublisherName☆14Updated 2 years ago
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 2 years ago
- a C++ library which will automatically download a module's PDB file, then parse it for a function address☆20Updated 7 years ago
- A bunch of architectural headers for i386 and AMD64☆35Updated last year
- Open Anti Cheat☆27Updated 2 years ago
- A PE32/PE32+ parser written in MASM32☆13Updated 8 years ago
- Elevate arbitrary MSR writes to kernel execution.☆26Updated last year
- Native API header files for the Process Hacker project (nightly).☆25Updated this week
- detect hypervisor with Nmi Callback☆34Updated 2 years ago
- ☆34Updated 4 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆23Updated 8 years ago
- NT reversal☆25Updated 6 years ago
- Injector with kernel power☆16Updated 4 years ago
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago
- Helper functions for calculating the authenticode digest for a portable executable file☆15Updated 4 years ago
- A poc that abuses Enclave☆36Updated 2 years ago
- Windows Console Monitor☆33Updated 5 years ago
- ntos shit☆23Updated last year