tandasat / kraft_dinner
Tool to dump UEFI runtime drivers implementing runtime services for Windows
☆96Updated 4 years ago
Alternatives and similar repositories for kraft_dinner:
Users that are interested in kraft_dinner are comparing it to the libraries listed below
- Intercepting DeviceControl via WPP☆130Updated 5 years ago
- A native hypervisor designed for the Windows operating system☆120Updated 3 years ago
- A simple x86_64 AMD-v hypervisor type-2 Programmed with C++, with soon to be added syscall hooks. [W.I.P]☆93Updated last year
- Header only wrapper around Hex-Rays API in C++20.☆154Updated last month
- Resolve DOS MZ executable symbols at runtime☆96Updated 3 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆209Updated 5 years ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆56Updated last year
- VM devirtualization PoC based on AsmJit and llvm☆112Updated 3 years ago
- Translates WinDbg "dt" structure dump to a C structure☆127Updated 8 years ago
- HelloAmdHvPkg is a type-1 research hypervisor for AMD processors.☆87Updated 4 years ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆71Updated last year
- Kernel driver for detecting Intel VT-x hypervisors.☆176Updated last year
- ☆67Updated 4 years ago
- ☆94Updated 7 years ago
- Header-only VMWare Backdoor API Implementation & Effortless VMX Patcher for Custom Guest-to-Host RPCs☆100Updated 4 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆193Updated 2 years ago
- a minimalistic windows hypervisor for amd processors☆98Updated 2 years ago
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆68Updated 2 years ago
- Disks for DMA☆100Updated 3 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆88Updated last year
- ☆139Updated 4 years ago
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆54Updated 3 years ago
- Enable SEH support for manual mapped x86-32bit PEs☆66Updated 5 years ago
- alternative smm driver for ryzen motherboards☆114Updated 4 months ago
- Documenting system information classes and their uses☆50Updated 3 years ago
- ☆125Updated 4 months ago
- x64 syscall caller in C++.☆86Updated 6 years ago
- ☆64Updated 11 years ago
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆76Updated 2 years ago
- Windows PDB parser for kernel-mode environment.☆94Updated 2 years ago