archercreat / api-tracer
api-tracer is a tiny (useless) tracer
☆14Updated last year
Alternatives and similar repositories for api-tracer:
Users that are interested in api-tracer are comparing it to the libraries listed below
- A driver to implement IOCTL hooking☆24Updated 2 years ago
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆39Updated 2 years ago
- devirtualization vmprotect☆61Updated last year
- ☆16Updated last year
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆62Updated last year
- A Binary Ninja plugin to deobfuscate Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆25Updated 6 months ago
- This is the PoC of a dynamic lifter and deobfuscator with collecting trace.☆35Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Playing with LLVM passes☆36Updated last year
- Experimental static analysis framework.☆14Updated 9 months ago
- Windows kernel driver template for cmkr and llvm-msvc.☆34Updated last year
- ☆30Updated 3 years ago
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆46Updated 3 years ago
- A thin introspection hypervisor framework that allows for low level resource manipulation.☆13Updated last year
- Elevate arbitrary MSR writes to kernel execution.☆25Updated last year
- Me fockin' pe protector☆45Updated 2 years ago
- Collaboration platform for reverse engineering tools.☆39Updated last month
- ☆32Updated last year
- Binary Ninja plugin for automating VMProtect analysis☆58Updated 2 years ago
- EDR PoC WIP LLC☆10Updated 11 months ago
- Just an example of a well-known technique to detect memory tampering via Windows Working Sets.☆16Updated 3 years ago
- ASUSTeK AsIO3 I/O driver unlock☆20Updated 3 years ago
- IDA plugin to deobfuscate emotet CFF☆17Updated 2 years ago
- ☆29Updated 3 years ago
- Provides commands to read from and write to arbitrary kernel-mode memory for users with the Administrator privilege. HVCI compatible. No …☆14Updated 7 months ago
- A basic Secure Virtual Machine hypervisor☆20Updated 3 years ago
- Small project to generate fake DLLs based on an executable's import table☆23Updated 4 years ago
- ☆31Updated 2 years ago
- Reverse engineered API for Microsoft's Time Travel Debugger☆32Updated 9 months ago
- AMD SVM hypervisor rootkit proof of concept☆44Updated last year