corelan / windbglib
Public repository for windbglib, a wrapper around pykd.pyd (for Windbg), used by mona.py
☆325Updated 2 years ago
Alternatives and similar repositories for windbglib:
Users that are interested in windbglib are comparing it to the libraries listed below
- ☆231Updated 7 years ago
- Cross Platform Kernel Fuzzer Framework☆448Updated 6 years ago
- Windows Kernel Drivers fuzzer☆306Updated 7 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆389Updated 5 years ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆158Updated 9 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆263Updated 7 years ago
- Detect, analyze and uniquely identify crashes in Windows applications☆501Updated this week
- Exploiting challenges in Linux and Windows☆122Updated 5 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆587Updated 7 years ago
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆334Updated 5 years ago
- ☆379Updated last year
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆426Updated 6 years ago
- Checksec, but for Windows: static detection of security mitigations in executables☆576Updated last month
- Patching ROP-encoded shellcodes into PEs☆184Updated 7 years ago
- A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3☆301Updated 5 years ago
- Fork of mona.py with x64dbg support☆99Updated 2 years ago
- PEDA-like debugger UI for WinDbg☆202Updated 10 months ago
- Tools for instrumenting Windows Defender's mpengine.dll☆293Updated 6 years ago
- Search for code cave in all binaries☆276Updated 7 months ago
- Cminer is a tool for enumerating the code caves in PE files.☆148Updated last year
- Payload development framework☆701Updated this week
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆384Updated last year
- ☆763Updated 2 years ago
- A distributed fuzzing testing suite with web administration☆373Updated 6 years ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆396Updated 4 years ago
- A small, null-free Windows shellcode that executes calc.exe (x86/x64, all OS/SPs)☆403Updated 9 months ago
- windows syscall table from xp ~ 10 rs4☆351Updated 6 years ago
- ☆243Updated 4 years ago
- Quickly debug shellcode extracted during malware analysis☆582Updated last year
- DC25 5A1F - Demystifying Windows Kernel Exploitation by Abusing GDI Objects☆144Updated 7 years ago