0xDbgMan/DrvEye
Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods BYOVD
CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.
Appears on
Quick read
Latest capture 2026-07-30 03:04
0 paths
Agent instructions and tool configuration found in this repository.
No config files detected.
3 observed captures since 2026-06-24. Charts use measured snapshots only.
Stars from first capture -1
All tracked data
Observed snapshots
Observed snapshots
Nearest indexed repositories by embedding similarity.
Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods BYOVD
It's pointy and it hurts!
Enumerating and removing kernel callbacks using signed vulnerable drivers
Brovan is a user-mode x86_64 binary emulator for your malware analysis & reverse engineering.
TCP/IP packet demultiplexer. Download from:
Debugger Anti-Detection Benchmark