h311d1n3r / HellTracer
A Linux x86/x86-64 tool to trace registers and memory regions.
☆35Updated 2 years ago
Alternatives and similar repositories for HellTracer:
Users that are interested in HellTracer are comparing it to the libraries listed below
- A Unit-Based Symbolic Execution Method for Detecting Memory Corruption Vulnerabilities in Executable Codes☆43Updated last year
- Custom instruction length for hex-rays☆17Updated last month
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- A IDA plugin to enable linking to locations in an IDB with a disas:// URI☆32Updated last year
- ☆28Updated 3 months ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆24Updated 3 years ago
- A driver to implement IOCTL hooking☆24Updated 2 years ago
- ☆25Updated 3 months ago
- ☆14Updated 3 years ago
- ☆15Updated last year
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆33Updated last year
- A script to detect stack-strings by using emulation (leveraging Unicorn)☆35Updated last year
- Extract data of TTD trace file to a minidump☆28Updated last year
- ☆29Updated 3 years ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆18Updated 4 months ago
- A post-processing script for TinyTracer☆38Updated last year
- Slides from various conference talks☆36Updated last year
- Neutralize KEPServerEX anti-debugging techniques☆31Updated 2 years ago
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆24Updated last year
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆29Updated 2 years ago
- IDA plugin to deobfuscate emotet CFF☆17Updated 2 years ago
- IDA Pro Python plugin to analyze and annotate Linux kernel alternatives☆22Updated 3 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆70Updated last year
- Supporting Materials for “Symbolic Triage” blog post☆24Updated 2 years ago
- Currently proof-of-concept☆16Updated 3 years ago
- Python bindings for BochsCPU☆35Updated this week
- Dynamic-Static binary instrumentation framework on top of GDB☆51Updated last year
- Progress of learning kernel development☆14Updated 2 years ago