UNCSecLab / VMXXNR
Implementation of a thin hypervisor
☆42Updated 8 years ago
Alternatives and similar repositories for VMXXNR:
Users that are interested in VMXXNR are comparing it to the libraries listed below
- IDAScript to create Symbol file which can be loaded in WinDbg via AddSyntheticSymbol☆40Updated 10 years ago
- IntelVT-X nice feature -> tool☆94Updated 10 years ago
- A branch-monitor-based solution for process monitoring.☆132Updated 5 years ago
- Some glue facilitating remote use of IDA (the Interactive DisAssembler) Python API.☆77Updated 4 years ago
- IDA PDB Loader☆47Updated 6 years ago
- ☆87Updated 9 years ago
- Recover control flow graph from obfuscated codes☆38Updated 9 years ago
- [ARCHIVED] mov rax, ${Thalium/IceBox}; jmp rax;☆72Updated 5 years ago
- ☆60Updated 9 years ago
- Elevation of privilege detector based on HyperPlatform☆120Updated 7 years ago
- A collection of tools for injecting DSOs in processes under various operating systems☆48Updated 2 years ago
- qb-sync is an open source tool to add some helpful glue between IDA Pro and Windbg. Its core feature is to dynamically synchronize IDA's …☆120Updated 9 years ago
- A mutation based user mode (ring3) dumb in-memory Windows Kernel (IOCTL) Fuzzer/Logger. This script attach it self to any given process a…☆68Updated 10 years ago
- Enable Virtualenv or Conda in IDAPython☆40Updated 4 years ago
- Code coverage analysis tools for the PIN Toolkit☆58Updated 11 years ago
- PoC LibVMI-based GDB server for virtual machines☆53Updated 7 years ago
- VMI-Unpack - A Virtual Machine Introspection (VMI) based generic unpacker.☆55Updated 5 years ago
- My collection of IDAPython scripts.☆40Updated 9 years ago
- IDAPython plugin for finding Xrefs from a function☆48Updated 8 years ago
- Logic-Oriented Opaque Predicate Detection in Obfuscated Binary Code☆50Updated 9 years ago
- A windbg extension, extracting token related contents☆41Updated 4 years ago
- An instrumentation script based on Frida which leverages Control Flow Guard to intercept indirect calls in CFG-enabled Windows binaries.☆29Updated 9 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub☆76Updated 12 years ago
- Arancino is a dynamic protection framework that defends Intel Pin against anti-instrumentation attacks.☆72Updated 2 years ago
- Dynamic analysis of binary programs to retrieve function-related information (arity, type of parameters, coupling).☆67Updated 7 years ago
- libipt - an Intel(R) Processor Trace decoder library☆18Updated 7 years ago
- libemu shim layer and win32 environment for Unicorn Engine☆71Updated 7 years ago
- CansecWest2016 - Getting Physical: Extreme Abuse of Intel Based Paging Systems☆27Updated 8 years ago
- Python portage of the Microcode Explorer plugin☆31Updated 5 years ago
- Security Evaluation of Dynamic Binary Instrumentation Engines☆79Updated 6 years ago