trailofbits / winchecksec
Checksec, but for Windows: static detection of security mitigations in executables
☆577Updated last month
Alternatives and similar repositories for winchecksec:
Users that are interested in winchecksec are comparing it to the libraries listed below
- Detect, analyze and uniquely identify crashes in Windows applications☆502Updated last week
- Winnie makes fuzzing Windows applications easy☆550Updated 2 years ago
- ☆766Updated 2 years ago
- Dump of win32k POCs for bugs I've found☆370Updated 2 years ago
- A Binary Ninja plugin for vulnerability research.☆288Updated 5 months ago
- Manul is a coverage-guided parallel fuzzer for open-source and blackbox binaries on Windows, Linux and MacOS☆339Updated 4 years ago
- DEFCON 27 workshop - Modern Debugging with WinDbg Preview☆715Updated 4 months ago
- Quickly debug shellcode extracted during malware analysis☆586Updated last year
- IDA Pro plugin to examine the glibc heap, focused on exploit development☆744Updated 2 years ago
- Public repository for windbglib, a wrapper around pykd.pyd (for Windbg), used by mona.py☆326Updated 2 years ago
- Using Intel's PIN tool to solve CTF problems☆497Updated 4 years ago
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆384Updated last year
- Examples of leaking Kernel Mode information from User Mode on Windows☆594Updated 7 years ago
- Cross Platform Kernel Fuzzer Framework☆448Updated 6 years ago
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆396Updated 4 years ago
- Karta - source code assisted fast binary matching plugin for IDA☆871Updated last year
- Vulnerability examples.☆402Updated 10 months ago
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆954Updated last year
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆334Updated 5 years ago
- A Bochs-based instrumentation performing kernel memory taint tracking to detect disclosure of uninitialized memory to ring 3☆301Updated 6 years ago
- Scripts and cheatsheets for IDAPython☆661Updated last year
- Use angr in Ghidra☆571Updated 7 months ago
- ROPium is a tool that helps you building ROP exploits by finding and chaining gadgets together☆384Updated 2 years ago
- A hypervisor for fuzzing built with WHVP and Bochs☆371Updated 6 years ago
- A sane API for IDA Pro's decompiler. Useful for malware RE and vulnerability research☆453Updated last year
- ☆231Updated 7 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆388Updated 5 years ago
- ☆380Updated last year
- A Collection of Chrome Sandbox Escape POCs/Exploits for learning☆815Updated 4 years ago
- Windows Kernel Drivers fuzzer☆336Updated 7 years ago