RolfRolles / HiddenBeeLoader
IDA loader module for Hidden Bee's custom executable file format
☆20Updated 6 years ago
Alternatives and similar repositories for HiddenBeeLoader:
Users that are interested in HiddenBeeLoader are comparing it to the libraries listed below
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆22Updated 7 years ago
- Plugins for IDA Pro and Hex-Rays☆41Updated 6 years ago
- ☆28Updated 7 years ago
- Allows you to add breakpoints from IDA (from the graph/text view) to WinDbg easily☆14Updated 6 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆38Updated 8 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 8 years ago
- Allows IDA PRO to disassemble x86-64 code (WOW64) in 32-bit database☆25Updated 3 years ago
- IDAPython compatibility library. idasix aims to create a smooth ida development process and allow a single codebase to function with mult…☆25Updated 6 years ago
- Windows build files for the VMHunt Intel PIN Trace tool☆19Updated 6 years ago
- Import debugging traces from WinDBG into IDA. Color the graph, fill in the value of all the operands, etc.☆25Updated 12 years ago
- ☆33Updated 3 years ago
- Windows 10 UAC bypass PoC using LaunchInfSection☆34Updated 6 years ago
- A couple of little tools I've made for working with Windows Drivers☆15Updated 9 years ago
- ☆17Updated 8 years ago
- Windows SMEP Bypass U=S☆37Updated 9 years ago
- My conference presentations and publications☆26Updated 3 years ago
- deprecated☆26Updated 6 years ago
- findLoop - find possible encryption/decryption or compression/decompression code☆26Updated 6 years ago
- Slides of 44Con 2018☆21Updated 6 years ago
- RE scripts, snippets (IDA, lief, gdb, etc.)☆24Updated 3 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 7 years ago
- Old exploits and code for my self-referencing PML4 technique (2014)☆31Updated 9 years ago
- Bootkits Revisited☆41Updated 10 years ago
- Malware monitor template based on MinHook☆16Updated 10 years ago
- ☆13Updated 7 years ago
- API logger plugin for Intel Pintool☆14Updated 7 years ago
- Kernel-mode file scanner☆18Updated 6 years ago
- x86 bootloader emulation with Miasm (case of NotPetya)☆41Updated 5 years ago
- A library for interacting with Windows process memory☆7Updated 6 years ago
- dr.rer.oec.gadget IDAPython plugin for the Interactive Disassembler <ABANDONED PROJECT>☆66Updated 8 years ago