FelixBer's Stars
microsoft/Windows-driver-samples
This repo contains driver samples prepared for use with Microsoft Visual Studio and the Windows Driver Kit (WDK). It contains both Universal Windows Driver and desktop-only driver samples.
Orange-Cyberdefense/GOAD
game of active directory
EpicGamesExt/raddebugger
A native, user-mode, multi-process, graphical debugger.
gaasedelen/lighthouse
A Coverage Explorer for Reverse Engineers
es3n1n/no-defender
A slightly more fun way to disable windows defender + firewall. (through the WSC api)
blackberry/pe_tree
Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall to dump in-memory PE files and reconstruct imports.
StanfordPL/stoke
STOKE: A stochastic superoptimizer and program synthesizer
microsoft/WinDbg-Samples
Sample extensions, scripts, and API uses for WinDbg.
danigargu/deREferencing
IDA Pro plugin that implements more user-friendly register and stack views
airbus-cert/Yagi
Yet Another Ghidra Integration for IDA
notpidgey/EagleVM
Native code virtualizer for x64 binaries
NaC-L/Mergen
Deobfuscation via optimization with usage of LLVM IR and parsing assembly.
revng/revng-c
trailofbits/vast
VAST is an experimental compiler pipeline designed for program analysis of C and C++. It provides a tower of IRs as MLIR dialects to choose the best fit representations for a program analysis or further program abstraction.
MagnetForensics/SwishDbgExt
Incident Response & Digital Forensics Debugging Extension
emproof-com/nyxstone
Nyxstone: assembly / disassembly library based on LLVM, implemented in C++ with Rust and Python bindings, maintained by emproof.com
mrexodia/perfect-dll-proxy
Perfect DLL Proxying using forwards with absolute paths.
lucasg/findrpc
Idapython script to carve binary for internal RPC structures
thalium/symless
puff/EazyDevirt
A tool for automatically reconstructing IL code from an assembly virtualized with Eazfuscator.NET
jhftss/IDA2Obj
Static Binary Instrumentation
charlesnathansmith/whatlicense
WinLicense key extraction via Intel PIN
sodareverse/TDE
A devirtualization engine for Themida.
therealdreg/ida_bochs_windows
Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)
mazeworks-security/MSiMBA
Deobfuscation of Semi-Linear Mixed Boolean-Arithmetic Expressions
alfarom256/HPHardwareDiagnostics-PoC
PoC exploit for HP Hardware Diagnostic's EtdSupp driver
gerhart01/Hyper-V-Tools
Different tools for Microsoft Hyper-V researching
PwCUK-CTO/SmartJump
IDA Pro plugin to enhance the 'g' keyboard shortcut
Air14/SourceSync
Set of plugins and library for dynamic pdb generation and synchronisation
ergot86/hyperv_stuff
Hyper-V related resources