ufrisk / LeechCore-pluginsLinks
Plugins related to LeechCore
☆45Updated 4 months ago
Alternatives and similar repositories for LeechCore-plugins
Users that are interested in LeechCore-plugins are comparing it to the libraries listed below
Sorting:
- Hygieia, a vulnerable driver traces scanner written in C++ as an x64 Windows kernel driver.☆150Updated 3 years ago
- x64 syscall caller in C++.☆93Updated 7 years ago
- ☆59Updated 3 years ago
- Resolve DOS MZ executable symbols at runtime☆96Updated 4 years ago
- PE-Dump-Fixer☆111Updated 5 years ago
- Dump system call codes, names, and offsets from Ntdll.dll☆83Updated 2 years ago
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆53Updated 3 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated 2 years ago
- Win64 UEFI Driver-based tool for unrestricted memory R/W☆30Updated 3 years ago
- ☆68Updated 5 years ago
- My Proof of Concept code for different publicly disclosed vulnerabilities☆47Updated last year
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆132Updated 2 years ago
- Obfuscate calls to imports by patching in stubs☆72Updated 4 years ago
- 🪝 Various EPT hook detection approaches☆143Updated 6 months ago
- (DEPRECATED) A simple anti-anti debug library for Windows☆30Updated 5 years ago
- Yet another IDA Pro/Home plugin for deobfuscating stack strings☆117Updated last week
- A simple and heavily documented series of test hypervisors built for 64-bit Windows 10 systems running under Intel's VT-x☆34Updated 5 years ago
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆45Updated 3 years ago
- Tool to dump UEFI runtime drivers implementing runtime services for Windows☆111Updated 5 years ago
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆71Updated 3 years ago
- disable most common windowsx64 systems patchguard☆87Updated 7 years ago
- I'm going to be dropping code from the XC3 Driver (result of reversing the driver)☆71Updated 6 years ago
- This driver hooks a device object for ioctl and uses mdls to allocate physical pages and manually injects an entry into a process's page …☆15Updated 2 years ago
- This is the P.O.C source for hooking the system calls on Windows 10 (1903) using it's dynamic trace feature weakness☆53Updated 6 years ago
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated 2 years ago
- devirtualization vmprotect☆65Updated 2 years ago
- Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6☆104Updated 2 years ago
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆26Updated 6 years ago
- Header-only VMWare Backdoor API Implementation & Effortless VMX Patcher for Custom Guest-to-Host RPCs☆106Updated 5 years ago
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆64Updated 6 years ago