stevemk14ebr / REToolsLinks
My reversing tools. Some custom, some not.
☆207Updated last year
Alternatives and similar repositories for RETools
Users that are interested in RETools are comparing it to the libraries listed below
Sorting:
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆298Updated last year
- Debugger Anti-Detection Benchmark☆361Updated last month
- Analyze patches in a process☆256Updated 4 years ago
- The best theme for x64dbg!☆89Updated 3 years ago
- Guided Hacking's official tool to practice bypassing anti-debug techniques.☆285Updated 4 months ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆297Updated 2 years ago
- HashDB API hash lookup plugin for IDA Pro☆332Updated 3 months ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆304Updated 11 months ago
- A collection of themes based on pastel colors, created for reverse engineers☆150Updated 5 months ago
- IDA Pro plugin to make bitfield accesses easier to grep☆245Updated last month
- Advanced driver monitoring utility.☆216Updated 3 years ago
- 🧪 Hypervisor with EPT hooking support.☆257Updated last month
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆379Updated 2 months ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆98Updated 2 years ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆159Updated 2 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆215Updated 3 years ago
- Ghetto user mode emulation of Windows kernel drivers.☆145Updated 11 months ago
- Browse Page Tables on Windows (Page Table Viewer)☆216Updated 3 years ago
- x86 PE Mutator☆225Updated 2 years ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆156Updated last year
- Global user-mode hooking framework, based on AppInit_DLLs. The goal is to allow you to rapidly develop hooks to inject in an arbitrary pr…☆178Updated 3 years ago
- x64dbg plugin for simple spoofing of CPUID instruction behavior☆95Updated 2 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆63Updated 3 years ago
- VAC3 (Valve Anti-Cheat 3) module emulator☆100Updated 4 years ago
- IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes☆161Updated last month
- A proof of concept demonstrating instrumentation callbacks on Windows 10 21h1 with a TLS variable to ensure all syscalls are caught.☆139Updated 3 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆88Updated last year
- This project provides a collection of Microsoft Windows kernel structures, unions and enumerations. Most of them are not officially docum…☆215Updated 7 months ago
- PE-Dump-Fixer☆111Updated 5 years ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆152Updated last year