vic4key / py-hooking
Sometimes, you need to manipulate low-level functionality (C APIs, etc) from high-level languages (Python). Eg. Force the low-level calls directly to your own Python override functions. This repo will help you do that.
☆14Updated 8 months ago
Alternatives and similar repositories for py-hooking:
Users that are interested in py-hooking are comparing it to the libraries listed below
- Wow64 Heaven's Gate Hook☆28Updated 3 years ago
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆15Updated last year
- Code Integrity Violation Spotter☆16Updated 8 months ago
- use ce driver, kernel library.☆14Updated 2 years ago
- Anti-Analysis technique, trick the debugger by Hiding events from it.☆19Updated 3 years ago
- ☆12Updated 3 years ago
- genpatch is IDA plugin that generates a python script for patching binary☆32Updated last year
- Based on nt5src☆15Updated last year
- Triton based symbolic emulator☆16Updated 2 years ago
- Yet another Windows DLL injector.☆38Updated 3 years ago
- Some crazy PE executables protection kernel driver☆18Updated 4 years ago
- ☆36Updated last year
- Subtract one PE file from another!☆20Updated 3 years ago
- Basic utilities for executing, reading and writing 64-bit data in a 32-bit WoW64 process☆17Updated 2 years ago
- ☆33Updated 3 years ago
- Easily hook WIN32 x64 functions☆18Updated 3 months ago
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago
- Detour hooking IRQ1 ISR through IDT (Interrupt Descriptor Table)☆19Updated last year
- EDR PoC WIP LLC☆10Updated last year
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated 2 years ago
- Small project to generate fake DLLs based on an executable's import table☆23Updated 4 years ago
- A plugin for x64dbg.☆24Updated 3 years ago
- .lib file for linking against the NT CRT☆18Updated 2 years ago
- Fake Timestamps of Driver Certificates while keeping validity.☆16Updated 3 years ago
- Injects position-dependent code into a code cave in an executable file, and applies relocations.☆21Updated last year
- A Binary Ninja plugin to deobfuscate Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆26Updated 6 months ago
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆18Updated 4 months ago
- Fix VMProtect 3.xx (tested 3.0.9 to 3.5.0)☆17Updated 3 years ago