b-irb / PigPEILinks
PEIM (UEFI) bootkit targeting OVMF (EDK2)
☆42Updated 2 years ago
Alternatives and similar repositories for PigPEI
Users that are interested in PigPEI are comparing it to the libraries listed below
Sorting:
- Rust bindings to the System Informer's (formerly known as Process Hacker) "phnt" native Windows headers☆47Updated 6 months ago
- PDB Rewriting Rust Library☆25Updated last year
- A set of LLVM and GCC based plugins that perform code obfuscation.☆134Updated last month
- Report and exploit of CVE-2024-21305.☆38Updated last year
- A KISS Rust crate to parse Windows kernel crash-dumps created by Windows & its debugger.☆41Updated last month
- ☆95Updated last year
- Generate a PDB file given the old PDB file and an address mapping☆49Updated 3 months ago
- A few examples of how to trap virtual memory access on Windows.☆36Updated 11 months ago
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆68Updated 2 months ago
- Rust bindings for VMProtect.☆26Updated last year
- Rule Engine for Dynamic Malware Analysis and Research☆25Updated 7 months ago
- Sample Rust crate used to implement a VBS enclave in Rust☆36Updated 5 months ago
- Rust implementation of lazy_importer☆57Updated 2 years ago
- Rust library for lifting raw binary data to LLVM IR☆60Updated 4 months ago
- Report and exploit of CVE-2023-36427☆89Updated 2 years ago
- Abusing exceptions for code execution.☆113Updated 2 years ago
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆97Updated last year
- Slaying multi-language LLVM IR with obfuscation passes to achieve JIT execution☆122Updated 3 weeks ago
- A minimalistic logger for Windows Kernel Drivers.☆25Updated last year
- Cargo subcommand to build a crate into shellcode☆24Updated last year
- Safe Rust bindings for the COM interfaces of the Windows debugging engine☆15Updated 2 weeks ago
- Leveraging TPM2 TCG Logs (Measured Boot) to Detect UEFI Drivers and Pre-Boot Applications☆22Updated 8 months ago
- ☆31Updated 9 months ago
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆78Updated 2 years ago
- Windows Minidump loader for Ghidra☆29Updated 3 years ago
- rekk is set of tools written in Rust to obfuscate ELF & PE executables with nanomites.☆31Updated 11 months ago
- A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.☆35Updated 3 years ago
- ☆22Updated 2 years ago
- ☆28Updated last month
- Easy encrypt/decrypt data with TPM☆25Updated last year