hasherezade / beardisasmLinks
A wrapper for capstone for bearparser
☆16Updated 3 months ago
Alternatives and similar repositories for beardisasm
Users that are interested in beardisasm are comparing it to the libraries listed below
Sorting:
- findLoop - find possible encryption/decryption or compression/decompression code☆26Updated 6 years ago
- Windows x64 Process Scanner to detect application compatability shims☆37Updated 7 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆36Updated 4 years ago
- ☆34Updated 8 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆32Updated 8 years ago
- Kernel Shellcode to add all privileges in token☆15Updated 8 years ago
- Use WinDBG to trace the Windows API calls of any Portable Executable file☆32Updated 8 years ago
- Static analysis tools for x86 assembly☆13Updated 8 years ago
- Solutions to HackSysExtremeVulnerableDriver challenges though my following of @FuzzySecurity's tutorials plus futher explanations where n…☆22Updated 8 years ago
- ASProtect reverse engineering & analysis WinDbg extension☆23Updated 5 years ago
- Exploits pack for the Windows Kernel mode driver HackSysExtremeVulnerableDriver written for educational purposes.☆66Updated 4 years ago
- Malware Analysis, Anti-Analysis, and Anti-Anti-Analysis☆45Updated 8 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆53Updated last year
- penter hook example and driver time recorder☆31Updated 8 years ago
- A collection of anti disassembly techniques☆19Updated 8 years ago
- drvtriks kernel driver for Windows 7 SP1 and 8.1 x64, that tricks around in your system.☆34Updated 8 years ago
- An API Monitor based on Instrumentation☆44Updated 8 years ago
- Will try to put here slides from now on when I give a talk☆24Updated 4 years ago
- ☆34Updated 4 years ago
- My articles for Paged Out! #2☆17Updated 6 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆22Updated 7 years ago
- Windows Inline function hooking library targeted at MSVC☆27Updated 9 years ago
- Kernel-mode file scanner☆19Updated 7 years ago
- Windows 10 UAC bypass PoC using LaunchInfSection☆35Updated 7 years ago
- A minimal tool to extract shellcode from 64-bit PE binaries.☆51Updated 4 years ago
- Allows you to add breakpoints from IDA (from the graph/text view) to WinDbg easily☆14Updated 7 years ago
- An Integrity-Check Monitoring Pintool☆58Updated 5 years ago
- User-mode part of Zerokit platform☆22Updated 6 years ago
- ☆17Updated 5 years ago
- a binary x86win32 code obfuscator using virtual machine☆32Updated 9 years ago