zodiacon / pstools-rust
☆12Updated 4 years ago
Alternatives and similar repositories for pstools-rust:
Users that are interested in pstools-rust are comparing it to the libraries listed below
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- Extract data of TTD trace file to a minidump☆28Updated last year
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆58Updated 5 months ago
- ☆21Updated 3 years ago
- Windows kernel PDB data parsed into YAML☆34Updated 2 months ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆79Updated 4 years ago
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆51Updated 2 years ago
- ☆8Updated 6 months ago
- Example of building an application verifer DLL☆44Updated 7 months ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆17Updated last year
- ☆27Updated 2 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆18Updated 3 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆34Updated 3 years ago
- Download pdbs from symbol servers and cache locally, parse symbol paths from env vars☆22Updated last month
- Different tools for Microsoft Hyper-V researching☆47Updated 7 months ago
- ☆24Updated last year
- A Practical example of ELAM (Early Launch Anti-Malware)☆33Updated 3 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆50Updated 4 years ago
- Winbindex bot to pull in binaries for specific releases☆46Updated last year
- Dumps information about all the callback objects found in a dump file and the functions registered for them☆35Updated 4 years ago
- This repository contains some tools that I have written in the past☆28Updated last year
- Windbg extension that allows you analyze Control Flow Guard map☆36Updated 3 years ago
- Code Integrity Violation Spotter☆17Updated 7 months ago
- A ready-made template for a project based on libpeconv.☆43Updated 3 months ago
- ☆26Updated 3 months ago
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆18Updated 3 months ago
- A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.☆27Updated 2 years ago
- Heappo 🦛 is a PyKD based extensions for WinDBG which aids Heap Exploitation☆13Updated 4 years ago
- Code samples that serve as references for Windows API functions☆19Updated 8 months ago