corelan / windbglib
Public repository for windbglib, a wrapper around pykd.pyd (for Windbg), used by mona.py
☆327Updated 2 years ago
Alternatives and similar repositories for windbglib:
Users that are interested in windbglib are comparing it to the libraries listed below
- ☆234Updated 7 years ago
- Windows Kernel Drivers fuzzer☆342Updated 8 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆395Updated 5 years ago
- Cross Platform Kernel Fuzzer Framework☆450Updated 6 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆434Updated 6 years ago
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆335Updated 6 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆598Updated 7 years ago
- Detect, analyze and uniquely identify crashes in Windows applications☆504Updated 2 months ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆162Updated 9 years ago
- windows syscall table from xp ~ 10 rs4☆353Updated 6 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆295Updated 6 years ago
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆385Updated last year
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆362Updated 5 years ago
- A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3☆301Updated 6 years ago
- ☆383Updated last year
- ☆786Updated 2 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆263Updated 7 years ago
- Fork of mona.py with x64dbg support☆103Updated 2 years ago
- PEDA-like debugger UI for WinDbg☆203Updated last year
- Checksec, but for Windows: static detection of security mitigations in executables☆585Updated 3 months ago
- Exploiting challenges in Linux and Windows☆122Updated 5 years ago
- Have fun with the LowFragmentationHeap☆239Updated 4 years ago
- Patching ROP-encoded shellcodes into PEs☆184Updated 7 years ago
- Dump of win32k POCs for bugs I've found☆373Updated 3 years ago
- IDA Pro plugin to examine the glibc heap, focused on exploit development☆749Updated 2 years ago
- An extensible framework for easily writing compiler optimized position independent x86 / x64 shellcode for windows platforms.☆517Updated 5 years ago
- Idapython script to carve binary for internal RPC structures☆233Updated last year
- ☆247Updated 4 years ago
- A small, null-free Windows shellcode that executes calc.exe (x86/x64, all OS/SPs)☆415Updated 11 months ago
- A Binary Ninja plugin for vulnerability research.☆294Updated 7 months ago