lololosys / windbg-theme
(l)user friendly WinDBG theme.
☆18Updated 5 years ago
Alternatives and similar repositories for windbg-theme:
Users that are interested in windbg-theme are comparing it to the libraries listed below
- Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)☆97Updated last year
- ☆42Updated 2 years ago
- Recon 2023 slides and code☆79Updated last year
- Files for http://blog.deniable.org/posts/windows-callbacks/☆71Updated 3 years ago
- IOCTLpus can be used to make DeviceIoControl requests with arbitrary inputs (with functionality somewhat similar to Burp Repeater).☆88Updated 3 years ago
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆105Updated 6 months ago
- Next gen process injection technique☆44Updated 4 years ago
- ☆95Updated 3 years ago
- Demo from the Malware Analysis and Development Webinar☆20Updated 10 months ago
- Minifilter Callback Patching Proof-of-Concept☆66Updated 2 years ago
- Small PoC of using a Microsoft signed executable as a lolbin.☆136Updated 2 years ago
- An attempt to restore and adapt to modern Win10 version the 'Rootkit Arsenal' original code samples☆69Updated 2 years ago
- Piece of code to detect and remove hooks in IAT☆63Updated 2 years ago
- Simple project using syscalls (via Syswhispers2) to execute MessageBox shellcode.☆74Updated 3 years ago
- ☆70Updated 2 years ago
- Win32 keylogger that supports all (non-ime using) languages correctly☆48Updated last year
- Experiment on reproducing Obfuscate & Sleep☆141Updated 4 years ago
- GetModuleHandle (via PEB) and GetProcAddress (via EAT) like☆31Updated 3 years ago
- LPE exploit for CVE-2023-36802☆22Updated last year
- Load a dynamic library from memory by modifying the native Windows loader☆207Updated last month
- vulnerability in zam64.sys, zam32.sys allowing ring 0 code execution. CVE-2021-31727 and CVE-2021-31728 public reference.☆91Updated 3 years ago
- 64bit WIndows 10 shellcode dat pops dat calc - Dynamic & Null Free☆60Updated 2 years ago
- Finding Truth in the Shadows☆88Updated 2 years ago
- Code used in this post https://captmeelo.com/redteam/maldev/2022/04/21/kernelcallbacktable-injection.html☆115Updated 2 years ago
- C# Utilities for Windows Notification Facility☆131Updated 3 months ago
- A novel technique to communicate between threads using the standard ETHREAD structure☆110Updated 4 years ago
- ☆80Updated 6 months ago
- ☆105Updated 8 months ago
- Remote Thread Detection with a Kernel Driver☆28Updated 2 months ago
- Various tools, PoCs and experiments related to my blog at https://www.forrest-orr.net/☆36Updated 3 years ago