dmaivel / ntoseye
Windows kernel debugger for Linux hosts running Windows under KVM/QEMU
☆70Updated 4 months ago
Alternatives and similar repositories for ntoseye:
Users that are interested in ntoseye are comparing it to the libraries listed below
- Report and exploit of CVE-2024-21305.☆35Updated last year
- Report and exploit of CVE-2023-36427☆91Updated last year
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated last year
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆115Updated 4 months ago
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆152Updated 2 weeks ago
- Hyper-V related resources☆30Updated last year
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆33Updated 6 months ago
- Header-only C++ library for producing PE files.☆31Updated last year
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆34Updated last year
- A journal for $6,000 Riot Vanguard bounty.☆62Updated last year
- Example of building an application verifer DLL☆45Updated 9 months ago
- Proof-of-concept game using VBS enclaves to protect itself from cheating☆39Updated 4 months ago
- Different tools for Microsoft Hyper-V researching☆48Updated 9 months ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆63Updated last year
- ☆82Updated 9 months ago
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆90Updated 5 months ago
- Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book☆106Updated 8 months ago
- Windows KASLR bypass using prefetch side-channel☆78Updated 10 months ago
- A KISS Rust crate to parse Windows kernel crash-dumps created by Windows & its debugger.☆33Updated last month
- Lightweight PDB symbol parser and resolver☆24Updated 4 months ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆131Updated 7 months ago
- SMM UEFI module and client for UMD privilege escalation☆34Updated last year
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆70Updated last year
- Another UEFI runtime bootkit☆29Updated last year
- IDA Type Info Libraries for RE☆26Updated 2 months ago
- Finding Truth in the Shadows☆89Updated 2 years ago