zyantific / zydis-go
Pure Go bindings for Zydis.
☆10Updated 9 months ago
Alternatives and similar repositories for zydis-go:
Users that are interested in zydis-go are comparing it to the libraries listed below
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 3 years ago
- Runtime smm module loader☆33Updated 2 years ago
- A thin introspection hypervisor framework that allows for low level resource manipulation.☆13Updated last year
- x86-64 user mode emulation using Zydis☆46Updated 3 months ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Generate Go bindings for shared C libraries.☆14Updated 9 months ago
- vmware-backdoor☆33Updated 3 years ago
- Exports monitoring plugin for x64dbg☆22Updated 2 years ago
- A native Windows library for intercepting kernel-to-user transitions using instrumentation callbacks☆19Updated last year
- Zydis JavaScript bindings via WASM☆18Updated 2 years ago
- Binary Ninja plugin for automating VMProtect analysis☆57Updated 2 years ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- Just an example of a well-known technique to detect memory tampering via Windows Working Sets.☆16Updated 3 years ago
- Native API header files for the Process Hacker project (nightly).☆26Updated last week
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆71Updated 5 years ago
- AMD SVM hypervisor rootkit proof of concept☆46Updated last year
- Triton based symbolic emulator☆16Updated 2 years ago
- PDB Rewriting Rust Library☆23Updated 11 months ago
- How Meltdown and Spectre haunt Anti-Cheat: DVRT details☆21Updated 8 months ago
- A reflexive driver loader to bypass Windows DSE (featuring a custom PE loader)☆41Updated 6 years ago
- A demonstration of hooking into the VMProtect-2 virtual machine☆18Updated last year
- Symbolic Execution based on lifting amd64 to z3☆26Updated 9 months ago
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- EDR PoC WIP LLC☆11Updated last year
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆60Updated 8 months ago
- ASUSTeK AsIO3 I/O driver unlock☆21Updated 3 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆49Updated 4 years ago
- Provides commands to read from and write to arbitrary kernel-mode memory for users with the Administrator privilege. HVCI compatible. No …☆16Updated 10 months ago
- A driver to implement IOCTL hooking☆24Updated 3 years ago
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago