shareef12 / libpdb
Parser for Microsoft Program Database (PDB) files
☆74Updated 4 years ago
Alternatives and similar repositories for libpdb:
Users that are interested in libpdb are comparing it to the libraries listed below
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆71Updated 5 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆42Updated 3 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆63Updated last year
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆48Updated 3 years ago
- Resolve DOS MZ executable symbols at runtime☆96Updated 3 years ago
- ☆67Updated 4 years ago
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆68Updated 2 years ago
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆48Updated 4 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆104Updated 4 years ago
- Visual Studio Project example for using Microsoft's STL in WDM (Windows Kernel-mode Driver)☆25Updated 3 years ago
- Documenting system information classes and their uses☆50Updated 3 years ago
- x86-64 user mode emulation using Zydis☆44Updated last month
- A simple x86_64 AMD-v hypervisor type-2 Programmed with C++, with soon to be added syscall hooks. [W.I.P]☆93Updated last year
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆39Updated 2 years ago
- ☆94Updated 7 years ago
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆53Updated 5 years ago
- Header only wrapper around Hex-Rays API in C++20.☆154Updated last month
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 2 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆88Updated last year
- This is the P.O.C source for hooking the system calls on Windows 10 (1903) using it's dynamic trace feature weakness☆51Updated 5 years ago
- x64 syscall caller in C++.☆86Updated 6 years ago
- IntroVirt is an guest introspection library for KVM☆54Updated 5 months ago
- A small tool for rapid enumeration of CPUID, and MSR fields.☆19Updated last year
- Debug Print viewer (user and kernel)☆65Updated last year
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆71Updated last year
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆56Updated last year
- File system minifilter driver for Windows to block symbolic link attacks.☆50Updated 4 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Updated 4 years ago
- clone of armadillo patched for windows☆46Updated 3 months ago
- Lifting from native architecture to VTIL. (WIP)☆74Updated 3 years ago