marcusbotacin / Self-Modifying-Code
Additional Material for the Self Modifying Code (SMC) paper
☆27Updated 5 years ago
Alternatives and similar repositories for Self-Modifying-Code
Users that are interested in Self-Modifying-Code are comparing it to the libraries listed below
Sorting:
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- Code-Reuse Exploits detection using Intel Processor Trace☆28Updated 6 years ago
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 3 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆35Updated 3 years ago
- Decode machine code into VEX IR and translate into LLVM IR☆27Updated 5 years ago
- AMD SVM hypervisor rootkit proof of concept☆46Updated last year
- A simple and heavily documented series of test hypervisors built for 64-bit Windows 10 systems running under Intel's VT-x☆32Updated 4 years ago
- Decrement Windows Kernel for fun and profit☆38Updated 7 years ago
- unicorn emulator for x64dbg☆33Updated 7 years ago
- x86 Dynamic Binary Translator Library☆34Updated 4 years ago
- This is a simple driver with x64 inline assembly☆55Updated 4 years ago
- XDV is disassembler or debugger that works based on the extension plugin.☆55Updated 5 years ago
- An Integrity-Check Monitoring Pintool☆57Updated 4 years ago
- Intel Processor Trace package collector for Windows☆18Updated 4 years ago
- A research project about Windows notify routines.☆35Updated 4 years ago
- Dynamic Taint Analysis versus Obfuscated Self-Checking☆16Updated 3 years ago
- ☆19Updated 8 years ago
- Tools made for my Hyper-V blog series @ https://foxhex0ne.blogspot.com/☆57Updated 4 years ago
- enable libemu run pe file and add some good modify☆14Updated 6 years ago
- A common set of helpers used across VTIL toolchain. Moved into -->☆20Updated 5 years ago
- POC of sysenter x64 LSTAR MSR hook☆39Updated 10 years ago
- VTIL command line utility☆27Updated 3 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated 10 months ago
- a binary x86win32 code obfuscator using virtual machine☆32Updated 8 years ago
- Figuring out the cause of a handle downgrade☆24Updated 2 years ago
- Intermediate x86 instruction representation for use in obfuscation/deobfuscation.☆53Updated 8 years ago
- Open Course for diving security internal☆51Updated 5 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆72Updated last year
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆67Updated 5 years ago
- ☆23Updated 2 months ago