☆149Jun 5, 2023Updated 2 years ago
Alternatives and similar repositories for IOCTLDump
Users that are interested in IOCTLDump are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆422Jul 4, 2025Updated 10 months ago
- ☆30Oct 13, 2020Updated 5 years ago
- Repository of different kernel drivers written while studying Windows NT Driver development☆12Apr 14, 2024Updated 2 years ago
- BYOVD: Loading dbk64.sys and grabbing a handle to it☆163Jun 8, 2022Updated 3 years ago
- Yet another windows internals repo☆220Aug 29, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Debug Print viewer (user and kernel)☆71Feb 7, 2024Updated 2 years ago
- Bindings for Microsoft WinDBG TTD☆240Aug 5, 2023Updated 2 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆239Apr 2, 2022Updated 4 years ago
- CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.☆334Mar 26, 2024Updated 2 years ago
- Time Travel Debugging IDA plugin☆596Jun 27, 2024Updated last year
- A Cross-Platform C++ parser library for Windows user minidumps with Python 3 bindings.☆232Oct 3, 2025Updated 7 months ago
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆211Jul 2, 2020Updated 5 years ago
- Yet another variant of Process Hollowing☆468Jul 31, 2025Updated 9 months ago
- A Windows kernel-mode rootkit that abuses legitimate communication channels to control a machine.☆724Aug 5, 2020Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆24Sep 26, 2021Updated 4 years ago
- ☆31Jan 12, 2022Updated 4 years ago
- A DTrace on Windows Reimplementation☆373May 6, 2026Updated 2 weeks ago
- ☆140Aug 3, 2021Updated 4 years ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,293Apr 2, 2026Updated last month
- Dump of win32k POCs for bugs I've found☆378Mar 6, 2022Updated 4 years ago
- ☆14Jan 7, 2022Updated 4 years ago
- CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)☆301Sep 28, 2021Updated 4 years ago
- Some of my windows kernel exploits for learning purposes☆137May 18, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆119Aug 7, 2022Updated 3 years ago
- Expriments☆485Oct 3, 2024Updated last year
- Windows NT x64 syscall fuzzer☆639Apr 2, 2026Updated last month
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Aug 11, 2023Updated 2 years ago
- Detect strange memory regions and DLLs☆191Jan 20, 2022Updated 4 years ago
- ☆18Jul 4, 2019Updated 6 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆439Aug 22, 2018Updated 7 years ago
- A simple password-based PE encryptor for Windows 32-bit executables.☆51Jan 9, 2025Updated last year
- Leaked Windows processes handles identification tool☆291Mar 14, 2022Updated 4 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- 参考taviso的代码逆向一下mpengine.dll☆20Jun 30, 2022Updated 3 years ago
- Windows Common Log File System Driver POC☆94Dec 21, 2021Updated 4 years ago
- Kernel shellcode injector☆148Mar 23, 2021Updated 5 years ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆261Sep 1, 2022Updated 3 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆666Jan 28, 2025Updated last year
- msFuzz is a coverage-guided fuzzer for Windows kernel drivers that utilizes Intel PT and leverages constraint and dependency analysis to …☆222Dec 24, 2025Updated 4 months ago
- An IDA Plugin that help analyzing module that use COM☆232Oct 10, 2025Updated 7 months ago