stevemk14ebr / REToolsLinks
My reversing tools. Some custom, some not.
☆210Updated last year
Alternatives and similar repositories for RETools
Users that are interested in RETools are comparing it to the libraries listed below
Sorting:
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆312Updated last year
- Debugger Anti-Detection Benchmark☆378Updated 4 months ago
- The best theme for x64dbg!☆89Updated 3 years ago
- Analyze patches in a process☆257Updated 4 years ago
- Guided Hacking's official tool to practice bypassing anti-debug techniques.☆289Updated 6 months ago
- IDA Pro plugin to make bitfield accesses easier to grep☆248Updated 4 months ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆157Updated last year
- HashDB API hash lookup plugin for IDA Pro☆346Updated 2 months ago
- A collection of themes based on pastel colors, created for reverse engineers☆153Updated 8 months ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆400Updated 5 months ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆307Updated 2 years ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆160Updated 3 years ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆310Updated last year
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆155Updated last year
- Shell extension for opening executables in IDA☆191Updated 2 years ago
- x86 PE Mutator☆227Updated 2 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆224Updated 3 years ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆106Updated 2 years ago
- Ghetto user mode emulation of Windows kernel drivers.☆151Updated last year
- x64dbg plugin for simple spoofing of CPUID instruction behavior☆97Updated 2 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆219Updated 3 years ago
- HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate oper…☆379Updated 2 years ago
- Advanced driver monitoring utility.☆218Updated 3 years ago
- IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes☆164Updated 3 months ago
- A proof of concept demonstrating instrumentation callbacks on Windows 10 21h1 with a TLS variable to ensure all syscalls are caught.☆142Updated 4 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆88Updated 2 years ago
- Global user-mode hooking framework, based on AppInit_DLLs. The goal is to allow you to rapidly develop hooks to inject in an arbitrary pr…☆182Updated 3 years ago
- Collection of hypervisor detections☆280Updated last year
- Universal x86/x64 VMProtect 2.0-3.X Import fixer☆17Updated 3 years ago
- An x86-64 Code Virtualizer☆293Updated last year