nccgroup / Winstrument
Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface analysis.
☆68Updated 4 years ago
Alternatives and similar repositories for Winstrument:
Users that are interested in Winstrument are comparing it to the libraries listed below
- A repository for my conference presentations☆35Updated 5 years ago
- ☆46Updated 5 years ago
- All the materials in BlueHat 2019 Seattle will be realeased here.☆68Updated 5 years ago
- LPE for CVE-2020-1054 targeting Windows 7 x64☆86Updated 4 years ago
- #INFILTRATE20 raptor's party pack.☆28Updated last year
- ☆78Updated 2 months ago
- ☆50Updated 5 years ago
- A collection of Frida hooks for experimentation on Windows platforms.☆99Updated 6 years ago
- Writeup and POC for CVE-2020-0753, CVE-2020-0754 and six fixed Window DOS Vulnerabilities.☆14Updated 5 years ago
- Sandbox escape using WinHTTP Web Proxy Auto-Discovery Service☆85Updated 5 years ago
- ☆135Updated 5 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆37Updated 6 years ago
- My conference presentations and Materials for them.☆32Updated 2 years ago
- A script to detect stack-strings by using emulation (leveraging Unicorn)☆35Updated last year
- Ebfuscator: Abusing system errors for binary obfuscation☆52Updated 5 years ago
- WIP Emotet Control Flow Unflattening using miasm and radare2☆23Updated 2 years ago
- ☆30Updated 3 years ago
- An exploit for CVE-2019-17026. It pops xcalc and was tested on Ubuntu (x64).☆48Updated 4 years ago
- Research material and Proof-of-Concepts for Aleph Research Findings☆89Updated 3 years ago
- A Fuzzer for Windows NDIS Drivers OID Handlers☆94Updated 3 years ago
- Write-ups for crackmes and CTF challenges☆51Updated 2 years ago
- Capture The Flag Binary fuzzer for Heap challanges☆41Updated 7 years ago
- ☆48Updated 4 years ago
- Public documents related to my talk "Bypass Windows Exploit Guard ASR" at Offensive Con 2019.☆93Updated 6 years ago
- Dockerfiles for (un)popular fuzzers!☆29Updated 5 years ago
- FLARE Kernel Shellcode Loader☆177Updated 6 years ago
- New improved corpus distillation toolset that has helped to found tens of vulnerabilities in MS and Adobe products☆55Updated 5 years ago
- Win32k Exploit by Grant Willcox☆89Updated 5 years ago
- Materials for the Binary Analysis Workshop presented at NorthSec 2020☆68Updated 4 years ago
- Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment☆122Updated 4 years ago