alexander-hanel / msdocsviewer
msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.
☆148Updated 10 months ago
Related projects ⓘ
Alternatives and complementary repositories for msdocsviewer
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆115Updated 2 months ago
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆163Updated 10 months ago
- Static Binary Instrumentation tool for Windows x64 executables☆180Updated 3 weeks ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆226Updated 3 months ago
- Debugger Anti-Detection Benchmark☆291Updated 11 months ago
- ☆182Updated last year
- masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)☆115Updated last year
- Repository for the code snippets from the AllThingsIDA video channel☆90Updated this week
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆111Updated 2 weeks ago
- Bindings for Microsoft WinDBG TTD☆213Updated last year
- IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformati…☆126Updated 2 weeks ago
- BYOVD: Loading dbk64.sys and grabbing a handle to it☆149Updated 2 years ago
- The Windbg extension that implements commands helpful to study Hyper-V on Intel processors.☆130Updated last month
- A DTrace on Windows Reimplementation☆328Updated 3 weeks ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆326Updated 3 weeks ago
- Single header version of System Informer's phnt library.☆186Updated this week
- ☆132Updated 9 months ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆81Updated last year
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆221Updated 2 years ago
- ☆96Updated last year
- IDA Pro plugin to make bitfield accesses easier to grep☆229Updated 7 months ago
- ☆131Updated last year
- Advanced driver monitoring utility.☆201Updated 2 years ago
- LLVM based static binary analysis framework☆192Updated last month
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆261Updated last month
- IDA/Binary Ninja Plugin to automatically identify and set enums for standard functions☆355Updated 3 weeks ago
- Writeups for CTF challenges☆30Updated last year
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆237Updated 2 years ago
- Rust symbol recovery tool☆31Updated 4 months ago
- Abusing exceptions for code execution.☆107Updated last year