tandasat / capstone
Capstone disassembly/disassembler framework: Core (Arm, Arm64, M68K, Mips, PPC, Sparc, SystemZ, X86, X86_64, XCore) + bindings (Python, Java, Ocaml)
☆14Updated 5 years ago
Alternatives and similar repositories for capstone:
Users that are interested in capstone are comparing it to the libraries listed below
- An ark tool's driver☆40Updated 7 years ago
- ☆25Updated 7 years ago
- by others☆38Updated 7 years ago
- ☆25Updated 7 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆55Updated 6 years ago
- For Example. See Miro's Blog☆30Updated 2 years ago
- x64 Kernel Hooks Detection☆24Updated 8 years ago
- APC注入DLL内核层☆22Updated 6 years ago
- Map memory to user space and manipulate user memory, using capmon☆23Updated 6 years ago
- Example of hijacking system calls via function pointer tables☆32Updated 3 years ago
- Kernel Inject Process☆11Updated 7 years ago
- Shareds for kernel developement☆27Updated 11 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆75Updated 3 years ago
- Some garbage drivers written for getting started☆64Updated 5 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆25Updated 10 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆28Updated 7 years ago
- ☆48Updated 6 years ago
- map driver to memory☆25Updated 6 years ago
- Another method to anti ThreadHideFromDebugger☆35Updated 5 years ago
- Hook system calls, context switches, page faults and more.☆33Updated 5 years ago
- ☆27Updated 5 years ago
- ☆13Updated 5 years ago
- ☆24Updated 5 years ago
- Code injection by hijacking threads in Windows 32-bit applications☆43Updated 6 years ago
- Modify process handle permissions☆59Updated 8 years ago
- Protected Process Light Library☆18Updated 4 years ago
- ☆12Updated 7 months ago
- windows kernel deriver loader(pro)☆46Updated 4 years ago
- Driver Loader/BE Bypass/Win Malware(lol)☆34Updated 5 years ago
- Disable Driver Callbacks☆9Updated 7 years ago