m417z / x64dbg-xfg-marker
An x64dbg plugin which marks XFG call signatures as data
☆72Updated last year
Related projects ⓘ
Alternatives and complementary repositories for x64dbg-xfg-marker
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆32Updated last year
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆33Updated 2 years ago
- Different tools for Microsoft Hyper-V researching☆46Updated 5 months ago
- Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)☆93Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Enabled / Disable LSA Protection via BYOVD☆62Updated 2 years ago
- Example of building an application verifer DLL☆44Updated 5 months ago
- Small visualizator for PE files☆67Updated last year
- ☆65Updated last year
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆16Updated last year
- ☆24Updated last year
- Windows kernel driver template for cmkr and llvm-msvc.☆33Updated 11 months ago
- Finding Truth in the Shadows☆84Updated last year
- Windows kernel PDB data parsed into YAML☆31Updated last week
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated last year
- Reimplement CreateProcessInternalW via Windows 10 20H1+/Windows 11 Base on NtCreateUserProcess-Post☆47Updated 2 months ago
- ☆17Updated 3 years ago
- ☆27Updated 2 years ago
- Code from process of reversing Sysinternals Suite for educational purposes, with videos to associate them☆48Updated last year
- Report and exploit of CVE-2023-36427☆87Updated last year
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆110Updated 4 months ago
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆30Updated 2 months ago
- ☆25Updated 3 weeks ago
- A post-processing script for TinyTracer☆37Updated last year
- Winbindex bot to pull in binaries for specific releases☆46Updated last year
- Monitors ETW for security relevant syscalls maintaining the set called by each unique process☆49Updated last year
- Windows PDB Parser using Imagehlp library.☆16Updated 2 years ago
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆64Updated last year
- call gates as stable comunication channel for NT x86 and Linux x86_64☆30Updated last year
- ☆84Updated 5 months ago