WitherOrNot / warbird-docs
Documentation of Microsoft's Warbird obfuscation
☆25Updated 5 months ago
Alternatives and similar repositories for warbird-docs:
Users that are interested in warbird-docs are comparing it to the libraries listed below
- Defeating WARBIRD obfuscation with one stone☆11Updated last year
- Research on obfuscated licensing APIs / CLIP service in the Windows kernel☆107Updated 2 years ago
- Take back control of Windows Code Integrity, no exploits or patching required! Requires that you control your own Platform Key (PK).☆39Updated 2 years ago
- ☆18Updated 7 years ago
- Implementation of a CBS client☆16Updated 6 months ago
- Explode your CBS today with THIS simple trick!☆18Updated 10 months ago
- ASUSTeK AsIO3 I/O driver unlock☆20Updated 3 years ago
- A skeleton WinRT component that can serve as a substitute for the Region Policy Evaluator in Windows.☆12Updated last year
- A thin introspection hypervisor framework that allows for low level resource manipulation.☆13Updated last year
- A Binary Ninja plugin to detect Themida, WinLicense and Code Virtualizer's obfuscated code locations.☆74Updated 6 months ago
- Collaboration platform for reverse engineering tools.☆39Updated 2 months ago
- How Meltdown and Spectre haunt Anti-Cheat: DVRT details☆21Updated 6 months ago
- R.I.P. 😔☆60Updated 5 months ago
- Reimplementation of Microsoft's Warbird obuscator☆112Updated 7 months ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆56Updated last year
- Plugin for x64dbg to disable parallel loading of dependencies☆19Updated 2 years ago
- NoMoreBugCheck Reloaded☆13Updated last month
- Integration of Microsoft Warbird with the MSVC compiler☆93Updated last year
- Lightweight PDB symbol parser and resolver☆24Updated 3 months ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆58Updated 7 months ago
- Given delta compressed PE files, find download links for them on the Microsoft Symbol Server. No source PE file or VirusTotal access requ…☆27Updated last year
- Fork of Scylla with additional fixes and Python bindings.☆40Updated 7 months ago
- 🎨 Seamlessly convert your favorite Visual Studio Code themes to IDA Pro themes.☆90Updated 10 months ago
- x86-64 user mode emulation using Zydis☆44Updated last month
- Devirtualizer for VirtualGuard Protector using AsmResolver☆39Updated last year
- Symbolic Execution based on lifting amd64 to z3☆26Updated 7 months ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- A Binary Ninja plugin to deobfuscate Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆26Updated 6 months ago
- Kernel Debugging over LAN cable for Windows XP/2003 x32☆32Updated 4 years ago
- Elevate arbitrary MSR writes to kernel execution.☆26Updated last year