cocafe / physmemLinks
Physical memory and MMIO read/write command line utility via asmmap64 on Windows
☆17Updated 2 years ago
Alternatives and similar repositories for physmem
Users that are interested in physmem are comparing it to the libraries listed below
Sorting:
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆79Updated 3 years ago
- Example of using Windows Platform Binary Table (WPBT)☆26Updated 2 years ago
- WinLicense key extraction via Intel PIN☆104Updated last year
- Tiny C x86_64 function detouring library.☆26Updated 2 weeks ago
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆87Updated last month
- Class Informer updated for 32bit targets in 64bit IDA 8.2+/9.0/9.1☆63Updated 5 months ago
- ☆50Updated 4 years ago
- Hypervisor-based debugger for AMD processors☆59Updated last year
- Simple and lightweight hypervisor for AMD processors☆35Updated 9 months ago
- Debug Print viewer (user and kernel)☆68Updated last year
- Research on obfuscated licensing APIs / CLIP service in the Windows kernel☆122Updated 3 years ago
- Proof of concept for injecting a 64-bit DLL into a 32-bit application☆35Updated 2 years ago
- "Mingw64 Driver Plus Plus": Mingw64, C++, DDK and (EA)STL made easy!☆41Updated last month
- An improved Detours.☆78Updated last week
- Win64 UEFI Driver-based tool for unrestricted memory R/W☆29Updated 3 years ago
- Windows Research Kernel☆34Updated this week
- A pure C++17 implementation of WPP software tracing☆19Updated 4 years ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆146Updated 6 years ago
- Example WDF/KMDF driver and test app demonstrating the "inverted call model"☆36Updated 5 years ago
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆46Updated 2 years ago
- Another wow64ext to try to be compatible with WOW64 for all architectures.☆94Updated last month
- x86-64 user mode emulation using Zydis☆67Updated 2 weeks ago
- A bunch of architectural headers for i386 and AMD64☆41Updated last year
- Windows PDB parser for kernel-mode environment.☆98Updated 3 months ago
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆52Updated 3 years ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆62Updated last year
- Disables virtualprotect checks/hooks so you can modify memory and change memory protection in binaries protected by VMProtect.☆129Updated 4 years ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆84Updated 2 years ago
- reverse engineering of the windows nt kernel debugger protocol & reimplementation.☆29Updated last year
- A plugin to x64dbg that lets you find out what writes to/accesses particular address☆115Updated 4 years ago