emdel / ksfinder
ksfinder - Retrieve exported kernel symbols from physical memory dumps
☆44Updated 8 years ago
Alternatives and similar repositories for ksfinder:
Users that are interested in ksfinder are comparing it to the libraries listed below
- A TE executable format loader for IDA☆28Updated 9 years ago
- CansecWest2016 - Getting Physical: Extreme Abuse of Intel Based Paging Systems☆27Updated 8 years ago
- Collection of scripts for radare2☆28Updated 6 years ago
- ropc-llvm is a PoC of a Turing complete ROP compiler with support for a subset of LLVM IR. It is an extension of ropc.☆67Updated 11 years ago
- Dynamic binary translation framework for instrumenting x86-64 user space Linux programs☆39Updated 6 years ago
- ☆38Updated 9 years ago
- A clone (of the basic core) of AFL fuzzer☆74Updated 9 years ago
- Routines for hunting down kernel structs.☆40Updated 13 years ago
- REIL translation library☆36Updated 8 years ago
- Fuzzer☆43Updated 10 years ago
- A distributed corpus distillation tool for windows applications.☆32Updated 8 years ago
- ☆63Updated 9 years ago
- Simple shellcode decoder using unicorn-engine☆99Updated 9 years ago
- Memory awesomeness.☆29Updated 10 years ago
- Translate regular Assembly into Extended Instructions☆86Updated 12 years ago
- ARM rop chain gadget searcher☆37Updated 7 years ago
- Triton based R2 plugin for concolic execution and total control☆31Updated 6 years ago
- SIGSTOPing ELF binaries since 0x7E1☆52Updated 8 months ago
- Vulnerability research and development.☆25Updated 9 years ago
- Malware Fragmentation Tool its a tool that simply fragment the PE file and it can disassemble the PE file, etc this tool very useful for…☆36Updated 9 years ago
- What Would Capstone Decode - IDA plugin that implements a Capstone powered IDA view☆58Updated 8 years ago
- ☆28Updated 2 years ago
- IDASimulator is a plugin that extends IDA's conditional breakpoint support, making it easy to augment / replace complex executable code i…☆47Updated 10 years ago
- A pure-python win32 debugger interface.☆28Updated 9 years ago
- ☆14Updated 9 years ago
- Python repository containing parsed standard C library function and argument information☆26Updated 6 years ago
- Nosy Newt is a simple concolic execution tool for exploring the input space of a binary executable program based in Triton☆61Updated 7 years ago
- Download all of Microsoft's security updates and symbols☆42Updated 9 years ago
- Python-based interactive assembler/disassembler CLI, powered by Keystone/Capstone.☆31Updated 8 years ago
- fcatalog idapython client☆27Updated 8 years ago