jeffli678 / writeupsLinks
writeups for CTFs and other stuff
☆23Updated 4 years ago
Alternatives and similar repositories for writeups
Users that are interested in writeups are comparing it to the libraries listed below
Sorting:
- A static analysis tool that helps security researchers scan a list of Windows kernel drivers for common vulnerability patterns in drivers…☆70Updated 3 years ago
- ☆48Updated 5 years ago
- ☆90Updated 5 years ago
- PoC for CVE-2021-32537: an out-of-bounds memory access that leads to pool corruption in the Windows kernel.☆57Updated 4 years ago
- Ebfuscator: Abusing system errors for binary obfuscation☆52Updated 5 years ago
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆99Updated 5 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Updated 2 years ago
- A Linux x86/x86-64 tool to trace registers and memory regions.☆39Updated 3 years ago
- Tutorial on how to write the dumbest obfuscator I could think of.☆176Updated 5 years ago
- Slides from various conference talks☆37Updated 2 years ago
- A set of small utilities, helpers for PIN tracers☆34Updated 3 weeks ago
- This utility allows you to lock every available memory regions of an arbitrary process into its working set.☆69Updated 2 years ago
- A recursive disassembler written in Python. Most suitable for VMs in CTFs.☆21Updated 5 years ago
- Neutralize KEPServerEX anti-debugging techniques☆32Updated 2 years ago
- Abusing exceptions for code execution.☆113Updated 2 years ago
- A utility to fix intentionally corrupted UPX packed files.☆91Updated 2 years ago
- Binary Ninja plugin for exploring Structured Exception Handlers☆82Updated last year
- A fast execution trace symbolizer for Windows.☆129Updated last year
- A code parser for C-Style header files that lets you to parse function's prototypes and data types used in their parameters.☆94Updated 3 years ago
- ☆49Updated 5 years ago
- PyKD DLLs for x86 and x64 platforms☆16Updated 2 years ago
- ☆14Updated 3 years ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆104Updated 5 years ago
- "An Introduction to Windows Exploit Development" is an open sourced, free Windows exploit development course I created for the Southeast …☆41Updated 5 years ago
- An attempt to restore and adapt to modern Win10 version the 'Rootkit Arsenal' original code samples☆73Updated 3 years ago
- Fileless persistence, attacks and anti-forensic capabilties.☆94Updated 6 years ago
- In line function hooking LKM rootkit☆51Updated 5 years ago
- Slides, recordings and materials of my public presentations, talks and workshops.☆78Updated 4 months ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆27Updated 2 years ago
- Assembly block for finding and calling the windows API functions inside import address table(IAT) of the running PE file.☆77Updated 2 years ago