Model Context Protocol for WinDbg.
☆1,447Jul 20, 2026Updated this week
Alternatives and similar repositories for mcp-windbg
Users that are interested in mcp-windbg are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- WinDbg-ext-MCP bridges your favorite LLM client (like Cursor, Claude, or VS Code) with WinDbg, enabling real-time, AI assisted kernel deb…☆112Sep 10, 2025Updated 10 months ago
- An MCP (Model Context Protocol) server that turns all pybag Windows debugger functions into native MCP tools. It lets MCP-compatible clie…☆86May 3, 2026Updated 2 months ago
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆81Sep 8, 2025Updated 10 months ago
- Vibe Reverse Engineer with IDA SQL: An interface for IDA in SQL via live virtual tables☆342Updated this week
- Virtual Trust Level (VTL 1) secure call tracing☆102Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- An IDA Pro / Hex-Rays plugin that turns noisy pseudocode into reviewable, kernel-aware cleanup artifacts☆157Jul 7, 2026Updated 2 weeks ago
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆469Jun 18, 2026Updated last month
- Windows KASLR bypass using prefetch side-channel☆207Apr 26, 2024Updated 2 years ago
- WinDbg Copilot - Agentic Debugging extension☆95Updated this week
- AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.☆10,595Updated this week
- A WinDbg plugin that turns the current debugging session into an MCP server for command docs, debugger actions, and AI-assisted analysis.☆43Jun 16, 2026Updated last month
- Collect Windows telemetry for Maldev☆494Jun 23, 2026Updated 3 weeks ago
- Toolset to manipulate RPC clients by finding delayed services and masquerading as them☆114Apr 28, 2026Updated 2 months ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆265Sep 1, 2022Updated 3 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Gain insights into MS-RPC implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By f…☆345May 4, 2026Updated 2 months ago
- A Windows Kernel Driver Emulator base on Unicorn, Kernel Memory Dump and some of native environment☆186Jan 15, 2026Updated 6 months ago
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆164Nov 23, 2025Updated 7 months ago
- Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods…☆191Apr 27, 2026Updated 2 months ago
- x64DbgMCPServer made from c# with Claude, Windsurf and Cursor support☆632Jun 16, 2026Updated last month
- IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformati…☆1,881Updated this week
- Position-independent Reflective Loader for macOS☆131Feb 19, 2026Updated 5 months ago
- WinDbg plugin to trace module transitions from a debugged driver.☆54Dec 22, 2025Updated 6 months ago
- Model Context Protocol for x64dbg & x32dbg☆433Jun 5, 2026Updated last month
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Windows hypervisor for Intel x64: defensive host hypervisor for Windows designed to mitigate kernel-level attacks including BYOVD, compat…☆267Updated this week
- Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls☆280Jul 13, 2026Updated last week
- Autonomous Windows POC developer from patchwatch diff reports☆66May 13, 2026Updated 2 months ago
- Hooking Windows' exception dispatcher to protect process's PML4☆259Jan 24, 2025Updated last year
- CVE-2025-50168 Exploit PoC — Pwn2Own Berlin 2025 - LPE(Windows 11) winning bug.☆144Nov 3, 2025Updated 8 months ago
- .NET tool used to enrich RPC telemetry☆103Jan 24, 2026Updated 5 months ago
- Reports and POCs for CVE 2024-43570 and CVE-2024-43535☆31Jun 7, 2025Updated last year
- Uses Threat-Intelligence ETW events to identify shellcode regions being hidden by fluctuating memory protections☆182May 17, 2023Updated 3 years ago
- WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.☆111Jun 22, 2026Updated last month
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Automated multi-engine framework for unpacking, analyzing, and devirtualizing binaries protected by commercial and custom Virtual Machine…☆428Jun 3, 2026Updated last month
- BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055, CVE…☆863Jul 12, 2026Updated last week
- Moonwalk++: Simple POC Combining StackMoonwalking and Memory Encryption☆231Dec 17, 2025Updated 7 months ago
- Stealth-focused Intel VT-x hypervisor (EAC/BE/ACs/AVs).☆374Mar 20, 2026Updated 4 months ago
- Code execution/injection technique using DLL PEB module structure manipulation☆286Jun 4, 2025Updated last year
- Lightweight, dependency-free x86-64 CPU emulation library with Unicorn-like guest mode and direct host-memory execution.☆218May 11, 2026Updated 2 months ago
- Exploiting the KsecDD Windows driver through Server Silos☆88Nov 11, 2024Updated last year