dmaivel / ntoseye
Windows kernel debugger for Linux hosts running Windows under KVM/QEMU
☆68Updated 3 months ago
Alternatives and similar repositories for ntoseye:
Users that are interested in ntoseye are comparing it to the libraries listed below
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆32Updated 5 months ago
- Report and exploit of CVE-2024-21305.☆34Updated last year
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆113Updated 3 months ago
- Report and exploit of CVE-2023-36427☆89Updated last year
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆90Updated 4 months ago
- Rust library for lifting raw binary data to LLVM IR☆44Updated this week
- Hyper-V related resources☆30Updated 11 months ago
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated last year
- Abusing exceptions for code execution.☆109Updated 2 years ago
- Header-only C++ library for producing PE files.☆30Updated last year
- Example of building an application verifer DLL☆44Updated 8 months ago
- A journal for $6,000 Riot Vanguard bounty.☆61Updated last year
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆147Updated this week
- Windows KASLR bypass using prefetch side-channel☆76Updated 9 months ago
- Windows kernel driver template for cmkr and llvm-msvc.☆34Updated last year
- Finding Truth in the Shadows☆88Updated 2 years ago
- Python bindings for BochsCPU☆35Updated this week
- A Binary Ninja plugin to detect Themida, WinLicense and Code Virtualizer's obfuscated code locations.☆74Updated 6 months ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆63Updated last year
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆33Updated last year
- IDA's Lumina feature, reimplemented for Binary Ninja, with new error handeling!☆37Updated 2 months ago
- Lightweight PDB symbol parser and resolver☆24Updated 3 months ago
- SMM UEFI module and client for UMD privilege escalation☆32Updated last year
- A large collection of 32bit and 64bit PE files useful for verifying the correctness of bin2bin transformations☆50Updated 6 months ago
- A minimalistic logger for Windows Kernel Drivers.☆20Updated 11 months ago
- A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.☆26Updated 2 years ago
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆33Updated last year
- Binary Ninja plugin for interacting with the OALabs HashDB service☆17Updated 3 months ago
- Autonomous pre-boot DMA attack hardware implant for M.2 slot based on PicoEVB development board☆73Updated last year