POPFD / cascade
A thin introspection hypervisor framework that allows for low level resource manipulation.
☆13Updated last year
Alternatives and similar repositories for cascade:
Users that are interested in cascade are comparing it to the libraries listed below
- This is a ring -1 header framework in order to simplify the creation of hypervisors on SVM☆22Updated last year
- A demonstration of hooking into the VMProtect-2 virtual machine☆18Updated last year
- Windows Minidump loader for Ghidra☆18Updated 2 years ago
- PDB Rewriting Rust Library☆23Updated last year
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆34Updated last year
- LLDB based debugger for Linux Kernel☆24Updated last month
- EDR PoC WIP LLC☆11Updated last year
- Symbolic Execution based on lifting amd64 to z3☆26Updated 10 months ago
- AMD SVM hypervisor rootkit proof of concept☆46Updated last year
- ASUSTeK AsIO3 I/O driver unlock☆21Updated 4 years ago
- Simple Intel VT-x type-2 hypervisor for 64-bit Linux.☆18Updated 4 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Experiment building lifting-bits dependencies with pure CMake. Migrated to:☆22Updated 7 months ago
- x86-64 user mode emulation using Zydis☆46Updated 3 months ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆34Updated 7 months ago
- ☆15Updated 2 years ago
- Windows kernel driver template for cmkr and llvm-msvc.☆34Updated last year
- Runtime smm module loader☆33Updated 2 years ago
- How Meltdown and Spectre haunt Anti-Cheat: DVRT details☆21Updated 8 months ago
- An example of how to use Microsoft Windows Warbird technology☆27Updated 2 years ago
- A basic Secure Virtual Machine hypervisor☆22Updated 4 years ago
- A minimalistic logger for Windows Kernel Drivers.☆22Updated last year
- ☆16Updated 2 years ago
- Binary Ninja plugin to perform automated analysis of Windows drivers☆17Updated 5 years ago
- Lightweight PDB symbol parser and resolver☆24Updated 6 months ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆64Updated last year
- ☆29Updated 3 years ago
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆32Updated last year
- A Binary Ninja plugin to deobfuscate Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆30Updated 9 months ago