depletionmode / divination
Python module for platform, iospace and physmem inspection
☆23Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for divination
- EFI DXE Emulator and Interactive Debugger☆82Updated 4 years ago
- EFI DXE Emulator and Interactive Debugger☆86Updated 4 years ago
- The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303…☆134Updated 3 years ago
- IDA plugin for extending UEFI reverse engineering capabilities☆55Updated 3 years ago
- System Management RAM analysis tool☆72Updated 3 months ago
- Arbitrary SMM code execution exploit for industry-wide 0day vulnerability in AMI Aptio based firmwares☆64Updated 8 years ago
- Some scripts for IDA Pro to assist with reverse engineering EFI binaries☆71Updated 9 years ago
- A Ghidra plugin for locating object file boundaries.☆118Updated last month
- Helper plugin for analyzing UEFI firmware☆90Updated 5 months ago
- ☆89Updated 5 months ago
- ☆31Updated 7 years ago
- This is an instruction to run your own SMM code.☆100Updated 3 years ago
- Tool to extract the kallsyms (System.map) from a memory dump☆24Updated last year
- Making Type Info Library (TIL) file for Apache modules☆54Updated 3 years ago
- Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)☆36Updated last year
- VMX intrinsics plugin for Hex-Rays decompiler☆70Updated 5 years ago
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆73Updated 4 months ago
- ☆10Updated 7 years ago
- The sample DXE runtime driver demonstrating how to program DMA remapping.☆58Updated 10 months ago
- A Ghidra processor module for the EFI Byte Code (EBC)☆29Updated 4 years ago
- Breaking Secure Boot with SMM☆39Updated 2 years ago
- Python bindings for the Microsoft Hypervisor Platform APIs.☆66Updated 5 years ago
- ☆27Updated 2 years ago
- VMCS Auditor provides almost all of Intel's VMCS Layout checklist based on Bochs Emulator.☆31Updated 5 years ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆74Updated 4 years ago
- Build your emulation environment as needed☆64Updated 3 years ago
- Hyper-V Research is trendy now☆150Updated last month
- A fast execution trace symbolizer for Windows.☆130Updated 6 months ago
- ☆75Updated 4 years ago
- SentinelOne's KeRnel Exploits Advanced Mitigations☆52Updated 6 years ago