cbwang505 / unicorn-whpxView external linksLinks
跨平台模拟执行unicorn框架基于Qemu的TCG模式(Tiny Code Generator),以无硬件虚拟化支持方式实现全系统的虚拟化,支持跨平台和架构的CPU指令模拟,本文讨论是一款笔者的实验性项目采用Windows Hypervisor Platform虚拟机模式提供了另一种CPU指令的模拟方式,在保持原有unicorn导出接口不变的情况下,采用Hyper-v支持带硬件虚拟化支持的Windows Hypervisor Platform API接口扩展了底层CPU模拟环境实现,支持X86指令集二进制程序模拟平台和调试器.
☆78Dec 17, 2023Updated 2 years ago
Alternatives and similar repositories for unicorn-whpx
Users that are interested in unicorn-whpx are comparing it to the libraries listed below
Sorting:
- ☆23May 8, 2023Updated 2 years ago
- Lightweight WINAPI tracing with Pin☆27Aug 22, 2019Updated 6 years ago
- an ida plugin used to decompile vmp☆369Jul 2, 2024Updated last year
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Aug 11, 2023Updated 2 years ago
- Windows X64 mode use seh in manual mapped dll or manual mapped sys☆80Oct 10, 2022Updated 3 years ago
- ☆148Jan 24, 2024Updated 2 years ago
- 笔者在一款基于LLVM编译器架构的retdec开源反编译器工具的基础上,融合了klee符号执行工具,通过符号执行(Symbolic Execution)引擎动态模拟反编译后的llvm的ir(中间指令集)运行源程序的方法,插桩所有的对x86指令集的thiscall类型函数对t…☆224Apr 6, 2022Updated 3 years ago
- ☆34Dec 15, 2023Updated 2 years ago
- windows kernel pagehook☆41Oct 30, 2022Updated 3 years ago
- Radical Windows ARK☆251Apr 18, 2025Updated 9 months ago
- Idapro cpu for OpenRISC arch☆15Mar 25, 2017Updated 8 years ago
- ida plugin to parse qt meta data☆84Jan 15, 2025Updated last year
- Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)☆62Aug 11, 2023Updated 2 years ago
- A very simple C++ library for download pdb, get rva of function, global variable and offset from struct.☆157Mar 26, 2024Updated last year
- The kernel mode Standard Template Library Template☆19Feb 22, 2020Updated 5 years ago
- ☆13Aug 24, 2022Updated 3 years ago
- Using NtCreateFile and NtDeviceIoControlFile to realize the function of winsock(利用NtCreateFile和NtDeviceIoControlFile 实现winsock的功能)☆127Sep 9, 2022Updated 3 years ago
- WinDbg-Samples ExdiGdbSrv fork 修复了一部分Vmware调试的问题☆32Jul 10, 2023Updated 2 years ago
- A kernel module for tracing signal☆31Jan 17, 2023Updated 3 years ago
- A VMBR (Virtual-Machine Based Rootkit) which runs a guest OS and sends the attacker its data☆28Apr 27, 2024Updated last year
- Hijack NotifyRoutine for a kernelmode thread☆41Jun 4, 2022Updated 3 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆68Aug 11, 2023Updated 2 years ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆75Aug 16, 2023Updated 2 years ago
- Mirror of https://gitee.com/SmartSmallBoy/hardware-breakpoint☆60May 20, 2024Updated last year
- Titan is a VMProtect devirtualizer☆117Mar 6, 2024Updated last year
- It's a kernel-based keylogger for Windows x86/x64.☆145Sep 18, 2022Updated 3 years ago
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆19Updated this week
- Hyper-V Research is trendy now☆197May 6, 2024Updated last year
- ☆223Mar 11, 2023Updated 2 years ago
- FindFunc is an IDA Pro plugin to find code functions that contain a certain assembly or byte pattern, reference a certain name or string,…☆354Nov 17, 2025Updated 2 months ago
- The Grimoire Hypervisor solution for x86 Processors with experimental nested virtualization support. Remastering with Rust in progress.☆606Feb 1, 2026Updated 2 weeks ago
- ☆61Aug 21, 2023Updated 2 years ago
- Command like tool to print mitigation flags for running processes in a memory dump☆47Sep 18, 2020Updated 5 years ago
- Kernel ReClassEx☆66Nov 21, 2023Updated 2 years ago
- a frame of amd-v svm nest☆53Apr 7, 2020Updated 5 years ago
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆26Feb 2, 2026Updated 2 weeks ago
- Android Security Bug Queries for CheckMarx☆20Sep 13, 2022Updated 3 years ago
- InfinityHookPro Win7 -> Win11 latest☆551Feb 7, 2023Updated 3 years ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆115Jan 21, 2025Updated last year