Sample extensions, scripts, and API uses for WinDbg.
☆813Dec 27, 2025Updated 2 months ago
Alternatives and similar repositories for WinDbg-Samples
Users that are interested in WinDbg-Samples are comparing it to the libraries listed below
Sorting:
- A bunch of JavaScript extensions for WinDbg.☆364Nov 28, 2024Updated last year
- Libraries for extending WinDbg and its underlying components.☆114Sep 30, 2025Updated 5 months ago
- Useful scripts for WinDbg using the debugger data model☆429Mar 27, 2024Updated last year
- Toy scripts for playing with WinDbg JS API☆243Jul 8, 2024Updated last year
- Windows Object Explorer 64-bit☆1,893Mar 9, 2026Updated last week
- This is a repo for small, useful scripts and extensions☆259Jun 1, 2023Updated 2 years ago
- DEFCON 27 workshop - Modern Debugging with WinDbg Preview☆744Nov 1, 2024Updated last year
- Examples of leaking Kernel Mode information from User Mode on Windows☆634Jul 7, 2017Updated 8 years ago
- awesome windbg extensions☆357Mar 27, 2019Updated 6 years ago
- WinDBG Anti-RootKit Extension☆646Jul 29, 2020Updated 5 years ago
- Internals information about Hyper-V☆733Mar 7, 2026Updated last week
- Process Monitor X v2☆651Jan 22, 2024Updated 2 years ago
- Native API header files for the System Informer project.☆1,364May 25, 2025Updated 9 months ago
- The Windows Library for Intel Process Trace (WinIPT) is a project that leverages the new Intel Processor Trace functionality exposed by W…☆406Apr 27, 2023Updated 2 years ago
- Windows NT x64 syscall fuzzer☆633Feb 19, 2026Updated last month
- VirtualKD-Redux - A revival and modernization of VirtualKD☆961Jun 23, 2024Updated last year
- pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers☆895Jun 18, 2025Updated 9 months ago
- Incident Response & Digital Forensics Debugging Extension☆393Dec 11, 2018Updated 7 years ago
- Windows System Explorer☆878Nov 29, 2025Updated 3 months ago
- My personal cheat sheet for using WinDbg for kernel debugging☆453Apr 17, 2025Updated 11 months ago
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆1,049Sep 24, 2023Updated 2 years ago
- Bindings for Microsoft WinDBG TTD☆235Aug 5, 2023Updated 2 years ago
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆466Apr 17, 2018Updated 7 years ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆213Oct 5, 2025Updated 5 months ago
- Detours with just single dependency - NTDLL☆672Nov 25, 2025Updated 3 months ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆241Nov 6, 2019Updated 6 years ago
- A PowerShell front-end for the Windows debugger engine.☆694Apr 3, 2024Updated last year
- Hook system calls, context switches, page faults and more.☆2,639May 9, 2023Updated 2 years ago
- Monitoring and controlling kernel API calls with stealth hook using EPT☆1,362Jan 22, 2022Updated 4 years ago
- Research on Windows Kernel Executive Callback Objects☆316Feb 22, 2020Updated 6 years ago
- A DTrace on Windows Reimplementation☆372Mar 12, 2026Updated last week
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,274May 1, 2024Updated last year
- A WinDbg extension to trace COM interactions☆131Aug 14, 2025Updated 7 months ago
- windbg plugin for win32k debugging☆75Oct 14, 2019Updated 6 years ago
- ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja…☆2,313Feb 15, 2026Updated last month
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆146Feb 23, 2019Updated 7 years ago
- Set of tools to analyze Windows sandboxes for exposed attack surface.☆2,276Nov 6, 2025Updated 4 months ago
- Windows NT Syscall tables☆1,395Dec 31, 2025Updated 2 months ago
- Public issue and feedback tracking for WinDbg Preview.☆59May 15, 2025Updated 10 months ago