a CLI tool for analyzing Microsoft Patch Tuesday security updates. Fetches patch data from MSRC, downloads update packages, extracts binaries, and compares pre/post-patch versions using BinDiff.
☆170May 6, 2026Updated 4 months ago
Alternatives and similar repositories for post-patch-postmortem
Users that are interested in post-patch-postmortem are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Full exploit code for CVE-2026-40369 - A Windows kernel arbitrary write vulnerability that allows browser sandbox escape from all browser…☆262May 18, 2026Updated 3 months ago
- A in-the-wild V8 type confusion bug.☆31Aug 8, 2025Updated last year
- C# MCP server for kernel & user-mode Windows debugging — DbgEng COM, KDNET, Frida, dbgsrv, TTD, and integrated VM control. 29 tools for L…☆40Jul 5, 2026Updated 2 months ago
- Windows kernel research tool. Looks like a debugger, but it is not a debugger. It uses a kernel driver to provide a WinDbg-like live kern…☆74Updated this week
- A Ghidra agentic reverse engineering skill.☆323Aug 6, 2026Updated last month
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆64Jul 2, 2026Updated 2 months ago
- test☆107Apr 25, 2026Updated 4 months ago
- A local tool for ingesting Windows Patch Tuesday CVEs, diffing patched binaries with Ghidriff and surfacing LLM-generated security analys…☆58Jul 31, 2026Updated last month
- A Rust decompiler built on top of angr☆529May 29, 2026Updated 3 months ago
- Windows Analysis and Research Toolkit☆688Apr 28, 2026Updated 4 months ago
- A Proof-of-Concept bootkit and UEFI boot application inspired by Petya ransomware, written in Assembly, C, and C++☆269Updated this week
- Vulnerability detection framework by Binarly's REsearch team☆882Aug 25, 2026Updated last week
- ☆40Jun 4, 2026Updated 3 months ago
- A Windows Named Pipe Multi-tool / Proxy☆375Dec 7, 2025Updated 9 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.☆110Jun 22, 2026Updated 2 months ago
- Extract Windows credentials directly from VM memory snapshots and virtual disks☆1,526Jun 7, 2026Updated 2 months ago
- DiffRays is a research-oriented tool for binary patch diffing, designed to aid in vulnerability research, exploit development, and revers…☆339Dec 2, 2025Updated 9 months ago
- ☆146Mar 29, 2025Updated last year
- Autonomous Windows POC developer from patchwatch diff reports☆66Jul 30, 2026Updated last month
- CPL remote trigger☆44Dec 28, 2025Updated 8 months ago
- Compile-time AES string obfuscation for C++☆109May 26, 2026Updated 3 months ago
- Intel 64/Windows low-level experiments☆115Aug 26, 2026Updated last week
- Find zero-days while you sleep. DeepZero is an automated vulnerability research framework that parses, decompiles, and analyzes thousands…☆710Aug 2, 2026Updated last month
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- POC for netdata ndsudo vulnerability - CVE-2024-32019☆21Aug 3, 2025Updated last year
- The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.☆511Mar 15, 2026Updated 5 months ago
- .NET CLR-Stomping☆148May 20, 2026Updated 3 months ago
- IDA plugin that extracts PE binaries into SQLite databases and C++ code for AI-powered vulnerability research☆53Jul 23, 2026Updated last month
- AI-Powered Reverse Engineering Plugin for IDA Pro☆719Aug 30, 2026Updated last week
- Obex – Blocking unwanted DLLs in user mode☆281Sep 18, 2025Updated 11 months ago
- Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust.☆32Updated this week
- Windows native ETW inspection suite for browsing providers, reading metadata, consuming live events, recording ETL traces, filtering resu…☆111Jul 27, 2026Updated last month
- CTF kernel exploitation notes, PoCs, exploits, and writeups.☆550Updated this week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆472Jun 18, 2026Updated 2 months ago
- A Windows kernel driver viewer and manager built in Rust — real-time enumeration, signature verification, SCM operations, and multi-for…☆156Mar 16, 2026Updated 5 months ago
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆166Nov 23, 2025Updated 9 months ago
- An MCP (Model Context Protocol) server that turns all pybag Windows debugger functions into native MCP tools. It lets MCP-compatible clie…☆92May 3, 2026Updated 4 months ago
- Study of binaries created with Rust through reverse engineering☆39Jan 28, 2026Updated 7 months ago
- ☆113Feb 17, 2025Updated last year
- An alternative to the builtin clipboard feature in Cobalt Strike that adds the capability to enable/disable and dump the clipboard histor…☆118Apr 16, 2026Updated 4 months ago