PrivFuKernel mode WinDbg extension and PoCs for token privilege investigation.
Stars: ✭ 244 (+1255.56%)
windbgtreeA command tree based on commands and extensions for Windows Kernel Debugging.
Stars: ✭ 94 (+422.22%)
DbgExtDebugger extension for the Debugging Tools for Windows (WinDbg, KD, CDB, NTSD).
Stars: ✭ 62 (+244.44%)
WinDbg ScriptsUseful scripts for WinDbg using the debugger data model
Stars: ✭ 92 (+411.11%)
netextWinDbg extension for data mining managed heap. It also includes commands to list http request, wcf services, WIF tokens among others
Stars: ✭ 140 (+677.78%)
cfg-showcaseSample programs that illustrate how to use Control Flow Guard, VS2015's control flow integrity implementation
Stars: ✭ 38 (+111.11%)
PyExtWinDbg Extensions for Python
Stars: ✭ 56 (+211.11%)
CFI-LBAdaptive Callsite-sensitive Control Flow Integrity - EuroS&P'19
Stars: ✭ 13 (-27.78%)
DbgSymGrabberJust another tool to download specify Symbol (.pdb) files
Stars: ✭ 35 (+94.44%)
OS-CFIOrigin-sensitive Control Flow Integrity (OS-CFI) - USENIX Security 2019
Stars: ✭ 27 (+50%)
shellexC-shellcode to hex converter, handy tool for paste & execute shellcodes in IDA PRO, gdb, windbg, radare2, ollydbg, x64dbg, immunity debugger & 010 editor
Stars: ✭ 89 (+394.44%)
DbgPkgScripts to prepare Windows system for debugging.
Stars: ✭ 30 (+66.67%)
SQLCallStackResolverUtility to resolve SQL Server callstacks to their correct symbolic form using just PDBs and without a dump file
Stars: ✭ 55 (+205.56%)
Awesome Reverse EngineeringReverse Engineering Resources About All Platforms(Windows/Linux/macOS/Android/iOS/IoT) And Every Aspect! (More than 3500 open source tools and 2300 posts&videos)
Stars: ✭ 2,954 (+16311.11%)
Debug RecipesMy notes collected while debugging various .NET and Windows problems.
Stars: ✭ 204 (+1033.33%)
DebuggingextensionsHost of debugging-related extensions such as post-mortem tools or WinDBG extensions
Stars: ✭ 177 (+883.33%)
TwindbgPEDA-like debugger UI for WinDbg
Stars: ✭ 171 (+850%)
Windbg ScriptsA bunch of JavaScript extensions for WinDbg.
Stars: ✭ 158 (+777.78%)
IrisWinDbg extension to display Windows process mitigations
Stars: ✭ 129 (+616.67%)
Kdmp ParserWindows kernel dump C++ parser with Python 3 bindings.
Stars: ✭ 71 (+294.44%)
NetcoredebuggingA repository maintains the book of ".NET Core application debugging" sample code.
Stars: ✭ 52 (+188.89%)
Windbg Cheat SheetA practical guide to analyze memory dumps of .Net applications by using Windbg
Stars: ✭ 43 (+138.89%)
Winobjex64Windows Object Explorer 64-bit
Stars: ✭ 775 (+4205.56%)
VoltronA hacky debugger UI for hackers
Stars: ✭ 5,599 (+31005.56%)
Memoscope.netDump and analyze .Net applications memory ( a gui for WinDbg and ClrMd )
Stars: ✭ 626 (+3377.78%)
DbgshellA PowerShell front-end for the Windows debugger engine.
Stars: ✭ 566 (+3044.44%)
WdbgarkWinDBG Anti-RootKit Extension
Stars: ✭ 450 (+2400%)
SuperdumpA service for automated crash-dump analysis
Stars: ✭ 384 (+2033.33%)
Miragekernel-mode Anti-Anti-Debug plugin. based on intel vt-x && ept technology
Stars: ✭ 272 (+1411.11%)
KhypervisorkHypervisor is a lightweight bluepill-like nested VMM for Windows, it provides and emulating a basic function of Intel VT-x
Stars: ✭ 264 (+1366.67%)