More gdb access right on debugger with undocumented API function
Original Reporter info from Mantis: parcel
-
Reporter name: Do-wan Kim
Original Reporter info from Mantis: parcel
- Reporter name: Do-wan Kim
Description:
I found a undocumented ntcreatethreadex function on windows vista(or higher) that can replace createremotethread api function.
It raise debugger access right more power on debugger.
Under windows 64bit with 32bit, it works fine. 64bit is not tested.
Mantis conversion info:
- Mantis ID: 29940
- OS: windows
- OS Build: 10
- Build: 52095
- Platform: x86
- Version: 1.6.1 (SVN)