A WinDbg extension to trace COM interactions
☆131Aug 14, 2025Updated 6 months ago
Alternatives and similar repositories for comon
Users that are interested in comon are comparing it to the libraries listed below
Sorting:
- Toy scripts for playing with WinDbg JS API☆243Jul 8, 2024Updated last year
- Monitor ETW events for Windows process mitigation policies, with stack traces☆31Oct 7, 2022Updated 3 years ago
- This is a repo for small, useful scripts and extensions☆258Jun 1, 2023Updated 2 years ago
- Cross-platform tool that allows browsing and extracting C and C++ type declarations from PDB files.☆360Feb 9, 2025Updated last year
- A POC for Windows Extension Host hooking☆24Jul 13, 2019Updated 6 years ago
- Reverse engineered API for Microsoft's Time Travel Debugger☆36Apr 18, 2024Updated last year
- windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking☆53Aug 28, 2022Updated 3 years ago
- Enumerate various traits from Windows processes as an aid to threat hunting☆202Jan 13, 2022Updated 4 years ago
- An example of how to use Microsoft Windows Warbird technology☆96Apr 23, 2023Updated 2 years ago
- A kernel mode Windows rootkit in development.☆49Dec 31, 2021Updated 4 years ago
- reverse engineering extension plugin for windbg☆121Sep 30, 2019Updated 6 years ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆213Oct 5, 2025Updated 4 months ago
- Application Verifier Dynamic Fault Injection☆40Jan 12, 2026Updated last month
- Bindings for Microsoft WinDBG TTD☆235Aug 5, 2023Updated 2 years ago
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆32Jul 9, 2021Updated 4 years ago
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆250Jul 5, 2022Updated 3 years ago
- Lightweight WINAPI tracing with Pin☆27Aug 22, 2019Updated 6 years ago
- Sysmon-Like research tool for ETW☆384Nov 15, 2022Updated 3 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆68Aug 11, 2023Updated 2 years ago
- A code parser for C-Style header files that lets you to parse function's prototypes and data types used in their parameters.☆94Apr 17, 2022Updated 3 years ago
- BYOVD: Loading dbk64.sys and grabbing a handle to it☆164Jun 8, 2022Updated 3 years ago
- Supporting Materials for “Symbolic Triage” blog post☆24Oct 31, 2022Updated 3 years ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆258Sep 1, 2022Updated 3 years ago
- A DTrace on Windows Reimplementation☆369Feb 3, 2026Updated 3 weeks ago
- A framework for lifting ARM32 to LLVM-IR and merging resulting code with LLVM-IR generated from source-code.☆12Oct 20, 2022Updated 3 years ago
- RISC-V to x86/64 instruction emulator written in C/C++☆10Jan 10, 2022Updated 4 years ago
- ☆11Jun 24, 2024Updated last year
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆121May 1, 2024Updated last year
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Aug 11, 2023Updated 2 years ago
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆26Feb 2, 2026Updated last month
- Constexpr hash functions for C++☆19May 29, 2020Updated 5 years ago
- Time Travel Debugging IDA plugin☆592Jun 27, 2024Updated last year
- C/C++ Runtime library for system file (Windows Kernel Driver) - Supports Microsoft STL☆192Aug 27, 2022Updated 3 years ago
- Web-based tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the …☆355Updated this week
- WinDbg installer/updater☆43Jul 11, 2023Updated 2 years ago
- A Windows API hooking library !☆31Aug 29, 2022Updated 3 years ago
- Sample extensions, scripts, and API uses for WinDbg.☆812Dec 27, 2025Updated 2 months ago
- Small visualizator for PE files☆70Sep 20, 2023Updated 2 years ago
- .lib file for linking against the NT CRT☆19Mar 18, 2022Updated 3 years ago