trailofbits / winchecksec
Checksec, but for Windows: static detection of security mitigations in executables
☆573Updated 2 weeks ago
Alternatives and similar repositories for winchecksec:
Users that are interested in winchecksec are comparing it to the libraries listed below
- Detect, analyze and uniquely identify crashes in Windows applications☆502Updated 6 months ago
- Quickly debug shellcode extracted during malware analysis☆577Updated last year
- ☆601Updated 2 years ago
- A Binary Ninja plugin for vulnerability research.☆286Updated 4 months ago
- Winnie makes fuzzing Windows applications easy☆547Updated 2 years ago
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆384Updated last year
- Examples of leaking Kernel Mode information from User Mode on Windows☆587Updated 7 years ago
- Manul is a coverage-guided parallel fuzzer for open-source and blackbox binaries on Windows, Linux and MacOS☆339Updated 4 years ago
- DEFCON 27 workshop - Modern Debugging with WinDbg Preview☆714Updated 2 months ago
- Checksec tool in Python, Rich output. Based on LIEF☆321Updated 4 months ago
- IDA Pro plugin to examine the glibc heap, focused on exploit development☆741Updated 2 years ago
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆949Updated last year
- ☆764Updated 2 years ago
- Windows Kernel Drivers fuzzer☆302Updated 7 years ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆394Updated 4 years ago
- Dump of win32k POCs for bugs I've found☆372Updated 2 years ago
- Karta - source code assisted fast binary matching plugin for IDA☆866Updated last year
- Cross Platform Kernel Fuzzer Framework☆447Updated 6 years ago
- Public repository for windbglib, a wrapper around pykd.pyd (for Windbg), used by mona.py☆324Updated 2 years ago
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆329Updated 5 years ago
- Virtual Machine Introspection, Tracing & Debugging☆568Updated 2 years ago
- Using Intel's PIN tool to solve CTF problems☆496Updated 4 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆389Updated 5 years ago
- PowerShell module to check if a Windows binary (EXE/DLL) has been compiled with ASLR, DEP, SafeSEH, StrongNaming, and Authenticode.☆630Updated 5 months ago
- Binee: binary emulation environment☆510Updated last year
- ☆374Updated last year
- How to build an efficient pwn development environment in 2020☆259Updated 4 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆290Updated 6 years ago
- ☆231Updated 7 years ago
- A hypervisor for fuzzing built with WHVP and Bochs☆370Updated 5 years ago