VoidSec / ida-helpers
Collection of IDA helpers
☆15Updated 2 years ago
Alternatives and similar repositories for ida-helpers:
Users that are interested in ida-helpers are comparing it to the libraries listed below
- Using Thread Description To Hide Shellcodes☆14Updated 2 years ago
- ☆10Updated 4 years ago
- Learn Winapi in this Repo with examples, to understand its abstraction in reverse engineering for Windows.☆9Updated 2 years ago
- Dump mapped PE files from memory to the disk☆19Updated 5 years ago
- A tiny Windows hook library for x86/x64☆14Updated last year
- hooking KiUserApcDispatcher☆24Updated 7 years ago
- genpatch is IDA plugin that generates a python script for patching binary☆32Updated last year
- Code Integrity Violation Spotter☆16Updated 8 months ago
- Detour hooking IRQ1 ISR through IDT (Interrupt Descriptor Table)☆19Updated last year
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆18Updated 4 months ago
- ☆14Updated 12 years ago
- Process injection via KernelCallbackTable☆13Updated 3 years ago
- automates exploits using ROP chains, using ntdll-scraper☆16Updated 2 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- Demonstrate the new FileDispositionInfoEx behavior☆14Updated 7 years ago
- Anti-Analysis technique, trick the debugger by Hiding events from it.☆19Updated 3 years ago
- Using Undocumented NTDLL Functions to Read/Write/Delete File☆18Updated 4 years ago
- Subtract one PE file from another!☆20Updated 3 years ago
- Analysis and Modification Tool for Executables☆16Updated 5 years ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆17Updated last year
- Debugger checks in 3 ways☆18Updated 7 years ago
- Collection of structures, prototype and examples for Microsoft Macro Assembler (MASM) x64.☆16Updated 4 years ago
- Zerokit shared code☆16Updated 5 years ago
- ☆11Updated 4 years ago
- Currently proof-of-concept☆16Updated 3 years ago
- ☆18Updated 5 years ago
- XOrCryptEx lightweight C Utility/Algorithm☆11Updated 2 years ago
- ☆7Updated 3 weeks ago
- Windows hidden thread suspend POC with code injection☆12Updated 7 years ago
- User-mode part of Zerokit platform☆20Updated 5 years ago