therealdreg / lldb_reversingLinks
Dreg's setup for lldb reversing. The simplest and easiest possible, without scripting. lldb debugging setup.
☆14Updated last year
Alternatives and similar repositories for lldb_reversing
Users that are interested in lldb_reversing are comparing it to the libraries listed below
Sorting:
- Virtual Trust Level (VTL 1) secure call tracing☆73Updated 3 weeks ago
- REcon 2024 Repo, slides for talk "GOP Complex: Image parsing bugs, EBC polymorphic engines and the Deus ex machina of UEFI exploit dev""☆13Updated 5 months ago
- ☆50Updated 5 months ago
- Recon 2023 slides and code☆79Updated 2 years ago
- A set of LLVM and GCC based plugins that perform code obfuscation.☆129Updated 3 weeks ago
- A few examples of how to trap virtual memory access on Windows.☆34Updated 9 months ago
- Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)☆112Updated 2 years ago
- ☆93Updated last year
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆119Updated last year
- uefi diskless persistence technique + OVMF secureboot bypass☆92Updated last year
- Hooking KPRCB IdlePreselect function to gain execution inside PID 0.☆68Updated 5 months ago
- masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)☆126Updated 2 years ago
- Report and exploit of CVE-2024-21305.☆38Updated last year
- A Proof-of-Concept implementation of Reflective DLL Injection (RDI) specifically for Windows on ARM64. Demonstrates PEB access via the x1…☆28Updated 3 months ago
- Windows 11 24H2 Runtime PatchGuard Bypass☆183Updated last week
- bypassing intel txt's tboot integrity checks via coreboot shim☆81Updated 6 months ago
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆124Updated 2 weeks ago
- Exploitable drivers, you know what I mean☆154Updated last year
- Finding Truth in the Shadows☆116Updated 2 years ago
- Aplos an extremely simple fuzzer for Windows binaries.☆68Updated 7 months ago
- Easy encrypt/decrypt data with TPM☆25Updated last year
- NovaHypervisor is a defensive x64 Intel host based hypervisor. The goal of this project is to protect against kernel based attacks (eithe…☆227Updated 2 months ago
- Exploit targeting NT kernel in 24H2 Windows Insider Preview☆144Updated last year
- Abusing exceptions for code execution.☆112Updated 2 years ago
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆164Updated 3 weeks ago
- An example of an external LLVM plugin module transform pass for the latest versions.☆14Updated 10 months ago
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆42Updated last year
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆114Updated last year
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆97Updated 11 months ago
- Windows syscall SDK with dynamic offset resolution, validation, obfuscation, and multi language bindings. Bypass API hooks across differe…☆47Updated last week