Qubasa / 0pack
A novel technique to hide code from debuggers & disassemblers
☆156Updated 8 months ago
Alternatives and similar repositories for 0pack:
Users that are interested in 0pack are comparing it to the libraries listed below
- Hypervisor-based debugger☆187Updated 4 years ago
- grap: define and match graph patterns within binaries☆171Updated 4 years ago
- PEDA-like debugger UI for WinDbg☆203Updated last year
- Hardcore corruption of my execve() vulnerability in WSL☆215Updated 7 years ago
- grap: define and match graph patterns within binaries☆154Updated 3 years ago
- Hypervisor-Level Debugger based on Radare2 / LibVMI, using VMI IO and debug plugins☆133Updated 6 years ago
- ☆107Updated 6 years ago
- ☆74Updated 4 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆163Updated 8 years ago
- A hypervisor for fuzzing built with WHVP and Bochs☆376Updated 6 years ago
- A project that aims to automatically devirtualize code that has been virtualized using x86virt☆126Updated 2 years ago
- realtime cross-tool collaborative reverse engineering☆101Updated 2 years ago
- A user-friendly fuzzing and crash triage tool for Windows☆131Updated 5 years ago
- LibVMI-based debug server, implemented in Python. Building a guest aware, stealth and agentless full-system debugger☆217Updated 4 years ago
- An event driven multi-core process debugging, tracing, and manipulation framework.☆175Updated 5 years ago
- ☆172Updated 2 years ago
- IDAtropy is a plugin for Hex-Ray's IDA Pro designed to generate charts of entropy and histograms using the power of idapython and matplot…☆140Updated 4 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆434Updated 6 years ago
- Windows API tracer for malware (oldname: unitracer)☆117Updated 7 years ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆116Updated 6 years ago
- My repository to upload drivers from different books and all the information related to windows internals.☆156Updated 5 years ago
- Cross Architecture Shellcode in C☆200Updated 8 years ago
- Have fun with the LowFragmentationHeap☆239Updated 4 years ago
- ☆225Updated 2 years ago
- A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3☆301Updated 6 years ago
- ANBU (Automatic New Binary Unpacker) a tool for me to learn about PIN and about algorithms for generic unpacking.☆90Updated 5 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆263Updated 7 years ago
- ☆135Updated 5 years ago
- POC viruses I have created to demo some ideas☆59Updated 5 years ago
- Zerokit/GAPZ rootkit (non buildable and only for researching)☆182Updated 6 years ago