github Actively maintained

hugsy/CFB

CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.

1 awesome list

Quick read

Stars
334
Forks
67
Open issues
2
Commits
483

Activity and growth

Latest capture 2026-07-30 03:04

Stars · last 7 days
No history
Commits · last 7 days
No history
Stars since tracking
-1
Stored snapshots
3

Classification

Metadata

Language
C++
Default branch
main
Created
2018-07-31
First commit
2018-07-29
Last pushed
2024-03-26
GitHub updated
2026-07-17
Last synced
2026-07-30 03:04
Stack scanned
2026-07-30 03:04
Archived
No

AI development signals

0 paths

Agent instructions and tool configuration found in this repository.

No config files detected.

Growth history

Tracked growth

3 observed captures since 2026-06-24. Charts use measured snapshots only.

Stars from first capture -1

Time horizon

All tracked data

Custom date range

Stars history

Observed snapshots

Commits history

Observed snapshots

Similar repositories

Nearest indexed repositories by embedding similarity.

0xDbgMan/DrvEye

Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods BYOVD

193 stars
Python 1 awesome list

br-sn/CheekyBlinder

Enumerating and removing kernel callbacks using signed vulnerable drivers

594 stars
C++ 1 awesome list

AdvDebug/Brovan

Brovan is a user-mode x86_64 binary emulator for your malware analysis & reverse engineering.

153 stars
C# 1 awesome list

simsong/tcpflow

TCP/IP packet demultiplexer. Download from:

1,773 stars
C++ 1 awesome list