alexander-hanel / msdocsviewer
msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.
☆148Updated last year
Alternatives and similar repositories for msdocsviewer:
Users that are interested in msdocsviewer are comparing it to the libraries listed below
- Static Binary Instrumentation tool for Windows x64 executables☆193Updated 2 months ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆123Updated 4 months ago
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆167Updated last year
- ☆189Updated last year
- Repository for the code snippets from the AllThingsIDA video channel☆95Updated 2 weeks ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆249Updated 5 months ago
- Bindings for Microsoft WinDBG TTD☆217Updated last year
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆115Updated 2 months ago
- A DTrace on Windows Reimplementation☆337Updated 2 months ago
- masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)☆116Updated last year
- ☆147Updated 11 months ago
- Debugger Anti-Detection Benchmark☆302Updated last year
- ☆139Updated last year
- The Windbg extension that implements commands helpful to study Hyper-V on Intel processors.☆134Updated last week
- Rust symbol recovery tool☆36Updated 6 months ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆243Updated 2 years ago
- ☆99Updated 2 years ago
- An intuitive query API for IDA Pro☆152Updated 2 weeks ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆337Updated 2 months ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆83Updated 2 years ago
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆224Updated 2 years ago
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆114Updated 6 months ago
- IDA Pro plugin to make bitfield accesses easier to grep☆230Updated 9 months ago
- Single header version of System Informer's phnt library.☆192Updated last week
- IDA/Binary Ninja Plugin to automatically identify and set enums for standard functions☆365Updated 2 months ago
- BYOVD: Loading dbk64.sys and grabbing a handle to it☆149Updated 2 years ago
- Writeups for CTF challenges☆30Updated last year
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆190Updated 2 months ago
- RISC-V Virtual Machine☆212Updated 2 weeks ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆132Updated 2 years ago