SinaKarvandi / Misc
This is a place to share my miscellaneous projects.
☆110Updated 4 years ago
Alternatives and similar repositories for Misc:
Users that are interested in Misc are comparing it to the libraries listed below
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆76Updated 8 months ago
- VT-based PCI device monitor (SPI)☆151Updated 4 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆209Updated 5 years ago
- Hyper-V Research is trendy now☆178Updated 10 months ago
- Windows 10 kernel and ntdll internal types, directly compatible with ida.☆50Updated 6 years ago
- A fast execution trace symbolizer for Windows.☆130Updated 10 months ago
- A collection of my IDA plugins☆134Updated 4 years ago
- Research on Windows Kernel Executive Callback Objects☆285Updated 5 years ago
- Elevation of privilege detector based on HyperPlatform☆120Updated 8 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 6 years ago
- Static unpacker for FinSpy VM☆100Updated 3 years ago
- A project that aims to automatically devirtualize code that has been virtualized using x86virt☆126Updated 2 years ago
- windbg plugin for win32k debugging☆73Updated 5 years ago
- PoC for a snapshot-based coverage-guided fuzzer targeting Windows kernel components☆68Updated 3 years ago
- ☆126Updated 5 months ago
- IDA plugin to explore and browse tags☆54Updated 5 years ago
- Windows Kernel Programming☆124Updated 4 years ago
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆200Updated 4 years ago
- kernel pool windbg extension☆80Updated 9 years ago
- MemoryRanger protects kernel data and code by running drivers and hosting data in isolated kernel enclaves using VT-x and EPT features. M…☆223Updated 4 years ago
- PoC for a taint based attack on VMProtect☆108Updated 5 years ago
- Driver Initial Reconnaissance Tool☆122Updated 5 years ago
- A simple API monitor for Windbg☆63Updated 7 years ago
- Simple library to spray the Windows Kernel Pool☆107Updated 5 years ago
- ☆72Updated 3 years ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆198Updated 8 months ago
- Kernel driver to fuzz Hyper-V hypercalls☆136Updated 6 years ago
- Toy scripts for playing with WinDbg JS API☆225Updated 8 months ago
- Toolkit for Hyper-V security research☆156Updated 3 years ago
- This is a collection of interesting codes about Windows Process creation.☆232Updated last year