baderj / practical-reverse-engineering
my results for the exercises in the book "Practical Reverse Engineering" by Bruce Dang et al.
☆108Updated 10 years ago
Related projects ⓘ
Alternatives and complementary repositories for practical-reverse-engineering
- Automatically rebuild Import Address Table for dumped PE file. With python bindings!☆115Updated 5 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆352Updated 4 years ago
- Learn the fundamentals of Binary Auditing. Know how HLL mapping works, get more inner file understanding than ever.☆75Updated 3 years ago
- Driver Initial Reconnaissance Tool☆120Updated 4 years ago
- Script analysis tool based on Frida.re☆128Updated 7 years ago
- Python scripts for reverse engineering.☆181Updated 3 years ago
- Incident Response & Digital Forensics Debugging Extension☆371Updated 5 years ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆156Updated 9 years ago
- Windows Kernel Drivers fuzzer☆296Updated 7 years ago
- Import address table (IAT) hooking is a well documented technique for intercepting calls to imported functions.☆216Updated 6 years ago
- ☆103Updated 2 years ago
- Blackhat 2012 Sample Codes☆91Updated 8 years ago
- An IDA Plugin that help analyzing module that use COM☆198Updated last year
- Recon 2015 Presentation from Alex Ionescu☆232Updated 8 years ago
- Parsers for custom malware formats ("Funky malware formats")☆92Updated 2 years ago
- Have fun with the LowFragmentationHeap☆232Updated 3 years ago
- x86 Inline hooking engine (using trampolines)☆92Updated 9 years ago
- My repository to upload drivers from different books and all the information related to windows internals.☆154Updated 5 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆422Updated 6 years ago
- Basic Windows Kernel Programming☆124Updated 4 years ago
- ☆107Updated 4 years ago
- qb-sync is an open source tool to add some helpful glue between IDA Pro and Windbg. Its core feature is to dynamically synchronize IDA's …☆116Updated 9 years ago
- ☆115Updated 12 years ago
- Toy scripts for playing with WinDbg JS API☆220Updated 4 months ago
- Translates WinDbg "dt" structure dump to a C structure☆126Updated 8 years ago
- IDA python plugin to scan binary with Yara rules☆171Updated 9 months ago
- Static unpacker for FinSpy VM☆97Updated 3 years ago
- IDA plugins and scripts for analyzing register usage frame☆179Updated last year
- An IDA Pro extension for easier (malware) reverse engineering☆110Updated 2 years ago