rrbranco / blackhat2012
Blackhat 2012 Sample Codes
☆91Updated 8 years ago
Related projects ⓘ
Alternatives and complementary repositories for blackhat2012
- Anti-technique Codes, Detection of Anti-technique codes☆37Updated 11 years ago
- Parsers for custom malware formats ("Funky malware formats")☆92Updated 2 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆73Updated 10 years ago
- DLL Injection Library & Tools☆70Updated 8 years ago
- ☆115Updated 12 years ago
- Supporting Files on my analysis of the malware designated hdroot.☆59Updated 7 years ago
- ☆73Updated 6 years ago
- Load a Windows Kernel Driver☆90Updated 7 years ago
- qb-sync is an open source tool to add some helpful glue between IDA Pro and Windbg. Its core feature is to dynamically synchronize IDA's …☆116Updated 9 years ago
- Automatically rebuild Import Address Table for dumped PE file. With python bindings!☆115Updated 5 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆75Updated 9 years ago
- IDA Pro resources, scripts, and configurations☆111Updated 8 months ago
- A process overwriting its own PEB to make an illusion that it has been loaded from a different path.☆92Updated 3 years ago
- ☆112Updated 8 years ago
- Hidden kernel mode code execution for bypassing modern anti-rootkits.☆80Updated 13 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub☆76Updated 12 years ago
- Driver Initial Reconnaissance Tool☆120Updated 4 years ago
- kernel exploitation helper class☆75Updated 7 years ago
- Collection Of Anti-Debugging Tricks☆96Updated 8 years ago
- Exploit code used for the HackSysExtremeVulnerableDriver.☆44Updated 6 years ago
- IDA Sploiter is a plugin for Hex-Ray's IDA Pro disassembler designed to enhance IDA's capabilities as an exploit development and vulnerab…☆180Updated 5 years ago
- Elevation of privilege detector based on HyperPlatform☆117Updated 7 years ago
- Rovnix Bootkit☆120Updated 9 years ago
- PoC for Bypassing UM Hooks By Bruteforcing Intel Syscalls☆39Updated 9 years ago
- Python scripts for reverse engineering.☆179Updated 3 years ago
- KINS Banking Trojan☆62Updated 9 years ago
- Static unpacker for FinSpy VM☆97Updated 3 years ago