georgenicolaou / W64oWoW64
Library that allows you to run 64bit code on a Wow64 32bit process
☆138Updated 7 years ago
Related projects: ⓘ
- Windbg extension to find PatchGuard pages☆116Updated 10 years ago
- Simple proof of concept code for injecting libraries on 64bit processes from a 32bit process☆91Updated 5 years ago
- Elevation of privilege detector based on HyperPlatform☆118Updated 7 years ago
- A command tree based on commands and extensions for Windows Kernel Debugging.☆104Updated 4 years ago
- ☆135Updated this week
- Translates WinDbg "dt" structure dump to a C structure☆126Updated 7 years ago
- PatchGuard Research☆290Updated 5 years ago
- ☆112Updated 11 years ago
- Hypervisor based tool for monitoring system register accesses.☆140Updated 6 years ago
- 0CCh Windbg extension: include some useful commands☆109Updated last year
- x64dbg conditional branches logger [Plugin]☆67Updated 7 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆100Updated 4 years ago
- Add More Features for x64dbg Script System,with some Functions which will help Plugin Coder☆122Updated 2 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆129Updated 5 years ago
- Recon 2015 Presentation from Alex Ionescu☆228Updated 8 years ago
- PE file manipulation library☆75Updated 4 years ago
- Library for kernel and user mode splicing for Windows (x86 and x64).☆62Updated 11 years ago
- Collection Of Anti-Debugging Tricks☆96Updated 8 years ago
- ☆144Updated 3 weeks ago
- MSI NTIOLib/WinIO Local Privilege Escalation exploit☆88Updated 7 years ago
- codes for my blog post: https://secrary.com/Random/InstrumentationCallback/☆165Updated 6 years ago
- Multi-purpose proof-of-concept tool based on CPU-Z CVE-2017-15303☆106Updated 6 years ago
- ☆119Updated 3 weeks ago
- WinDbg debugger extension library providing various tools to analyse, dump and fix (restore) Microsoft Portable Executable files for both…☆83Updated 3 weeks ago
- ☆52Updated this week
- Static unpacker for FinSpy VM☆97Updated 3 years ago
- A local copy of Alex Ionescu's seemingly abandoned native-nt-toolkit project containing knowledge inherited from the ReactOS project.☆53Updated 4 years ago
- ☆79Updated this week
- Load a Windows Kernel Driver☆89Updated 7 years ago