repnz's Stars
srwi/EverythingToolbar
Everything integration for the Windows taskbar.
EasyHook/EasyHook
EasyHook - The reinvention of Windows API Hooking
matterpreter/DefenderCheck
Identifies the bytes that Microsoft Defender flags on.
retep998/winapi-rs
Rust bindings to Windows API
grayhatacademy/ida
microsoft/clrmd
Microsoft.Diagnostics.Runtime is a set of APIs for introspecting processes and dumps.
winsiderss/phnt
Native API header files for the System Informer project.
3F/DllExport
.NET DllExport with .NET Core support (aka 3F/DllExport aka DllExport.bat)
rwfpl/rewolf-wow64ext
Helper library for x86 programs that runs under WOW64 layer on x64 versions of Microsoft Windows operating systems.
wbenny/pdbex
pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers
RolfRolles/HexRaysDeob
Hex-Rays microcode API plugin for breaking an obfuscating compiler
ioncodes/idacode
An integration for IDA and VS Code which connects both to easily execute and debug IDAPython scripts.
matt-wu/Ext3Fsd
Ext2/3/4 file system driver for Windows
microsoft/DbgShell
A PowerShell front-end for the Windows debugger engine.
inforion/idapython-cheatsheet
Scripts and cheatsheets for IDAPython
michelhe/rustboyadvance-ng
RustBoyAdvance-NG is a Nintendo™ Game Boy Advance emulator and debugger, written in the rust programming language.
Cr4sh/WindowsRegistryRootkit
Kernel rootkit, that lives inside the Windows registry values data
wbenny/KSOCKET
KSOCKET provides a very basic example how to make a network connections in the Windows Driver by using WSK
katlogic/WindowsD
Disable DSE and WinTcb (without breaking DRM)
getsentry/pdb
A parser for Microsoft PDB (Program Database) debugging information
AlanMorel/MapleServer2
MapleStory 2 Emulator
Coldzer0/Cmulator
Cmulator is ( x86 - x64 ) Scriptable Reverse Engineering Sandbox Emulator for shellcode and PE binaries . Based on Unicorn & Zydis Engine & javascript
mkorpela/overrides
A decorator to automatically detect mismatch when overriding a method
tpn/winsdk-10
tandasat/DotNetHooking
Sample use cases of the .NET native code hooking technique
shemesh999/oregami
IDA plugins and scripts for analyzing register usage frame
ykfre/BsodSurvivor
This project aims to facilitate debugging a kernel driver in windows by adding support for a code change on the fly without reboot/unload, and more!
xiao70/X70FSD
Windows file system filter drivers(minifilter) to encrypt, compress, or otherwise modify file-based data require some of the most complex kernel software developed for Windows.
romanofski/programslice
Static analysis tool to slice python programs
zacateras/sddl-parser
Security Descriptor Definition Language (SDDL) Parser