koutto / ioctlbf
Windows Kernel Drivers fuzzer
☆296Updated 7 years ago
Related projects ⓘ
Alternatives and complementary repositories for ioctlbf
- Examples of leaking Kernel Mode information from User Mode on Windows☆581Updated 7 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆273Updated 6 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆422Updated 6 years ago
- Canadian Furious Beaver is a ProcMon-style tool designed only for capturing IRPs sent to any Windows driver.☆310Updated 7 months ago
- Research on Windows Kernel Executive Callback Objects☆278Updated 4 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆360Updated 4 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆352Updated 4 years ago
- windows syscall table from xp ~ 10 rs4☆348Updated 6 years ago
- Idapython script to carve binary for internal RPC structures☆214Updated 8 months ago
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆195Updated 4 years ago
- ☆229Updated 7 years ago
- Windows RPC Python fuzzer☆156Updated 7 years ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆156Updated 9 years ago
- Have fun with the LowFragmentationHeap☆232Updated 3 years ago
- A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3☆297Updated 5 years ago
- Public repository for windbglib, a wrapper around pykd.pyd (for Windbg), used by mona.py☆323Updated 2 years ago
- ☆393Updated 7 years ago
- awesome-windows-security-development☆171Updated 6 years ago
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆325Updated 5 years ago
- ☆238Updated 4 years ago
- Extract Windows Defender database from vdm files and unpack it☆425Updated 4 years ago
- Toy scripts for playing with WinDbg JS API☆220Updated 4 months ago
- Dump of win32k POCs for bugs I've found☆370Updated 2 years ago
- My repository to upload drivers from different books and all the information related to windows internals.☆154Updated 5 years ago
- A bunch of JavaScript extensions for WinDbg.☆320Updated 3 years ago
- PEDA-like debugger UI for WinDbg☆201Updated 7 months ago
- Windows NT x64 syscall fuzzer☆589Updated last year
- idenLib - Library Function Identification [This project is not maintained anymore]☆388Updated 5 years ago
- Incident Response & Digital Forensics Debugging Extension☆371Updated 5 years ago
- IFL - Interactive Functions List (plugin for IDA Pro)☆425Updated 3 weeks ago