hugsy / defcon_27_windbg_workshop
DEFCON 27 workshop - Modern Debugging with WinDbg Preview
☆701Updated last year
Related projects: ⓘ
- My personal cheat sheet for using WinDbg for kernel debugging☆371Updated last year
- ☆746Updated last year
- Examples of leaking Kernel Mode information from User Mode on Windows☆574Updated 7 years ago
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆905Updated 11 months ago
- A bunch of JavaScript extensions for WinDbg.☆310Updated 2 years ago
- Time Travel Debugging IDA plugin☆551Updated 2 months ago
- Pinjectra is a C/C++ OOP-like library that implements Process Injection techniques (with focus on Windows 10 64-bit)☆785Updated 2 years ago
- Dump of win32k POCs for bugs I've found☆369Updated 2 years ago
- Checksec, but for Windows: static detection of security mitigations in executables☆558Updated last year
- Scripts and cheatsheets for IDAPython☆653Updated 10 months ago
- Quickly debug shellcode extracted during malware analysis☆547Updated last year
- Internals information about Hyper-V☆657Updated this week
- Windows Kernel Drivers fuzzer☆289Updated 7 years ago
- A Pin Tool for tracing API calls etc☆1,268Updated 3 weeks ago
- Dynamic unpacker based on PE-sieve☆650Updated 6 months ago
- Useful scripts for WinDbg using the debugger data model☆383Updated 5 months ago
- Virtual Machine Introspection, Tracing & Debugging☆558Updated 2 years ago
- My notes while studying Windows internals☆387Updated this week
- Canadian Furious Beaver is a ProcMon-style tool designed only for capturing IRPs sent to any Windows driver.☆308Updated 5 months ago
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆639Updated 3 months ago
- Portable Executable parsing library (from PE-bear)☆648Updated 3 weeks ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆382Updated 3 years ago
- Public repository for windbglib, a wrapper around pykd.pyd (for Windbg), used by mona.py