therealdreg / masm32-kernel-programmingLinks
masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)
☆127Updated 2 years ago
Alternatives and similar repositories for masm32-kernel-programming
Users that are interested in masm32-kernel-programming are comparing it to the libraries listed below
Sorting:
- Recon 2023 slides and code☆80Updated 2 years ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆161Updated 2 years ago
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆124Updated last year
- A Python script to download PDB files associated with a Portable Executable (PE)☆128Updated 11 months ago
- Advanced driver monitoring utility.☆217Updated 3 years ago
- MalUnpack companion driver☆99Updated last year
- x86/x64 Ring 0/-2 System Freezer/Debugger☆120Updated 8 months ago
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆169Updated 5 months ago
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆165Updated 3 years ago
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆36Updated 2 years ago
- Writeups for CTF challenges☆35Updated 2 years ago
- My notes while studying Windows exploitation☆193Updated 2 years ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆109Updated 3 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆118Updated 2 years ago
- A comprehensive Hypervisor resources repo☆189Updated 3 months ago
- NovaHypervisor is a defensive x64 Intel host based hypervisor. The goal of this project is to protect against kernel based attacks (eithe…☆243Updated 3 months ago
- A dynamic unpacking tool☆145Updated 2 years ago
- ☆122Updated last month
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆260Updated 3 years ago
- Simple x86/x64 Assembler/Disassembler/Emulator☆189Updated last month
- uefi diskless persistence technique + OVMF secureboot bypass☆95Updated last year
- Single header version of System Informer's phnt library.☆240Updated 3 weeks ago
- a PE Loader and Windows API tracer. Useful in malware analysis.☆143Updated 3 years ago
- Code samples that serve as references for Windows API functions☆77Updated last year
- How to retro theme your Ghidra☆35Updated 3 months ago
- A tutorial on how to write a packer for Windows!☆305Updated 2 years ago
- ☆158Updated last month
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆161Updated last year
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆57Updated 3 years ago
- Admin to Kernel code execution using the KSecDD driver☆263Updated last year