Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add Support for Dumping Additional Data Types using DIA SDK #17

Open
gwillcox-r7 opened this issue Sep 1, 2022 · 0 comments
Open

Add Support for Dumping Additional Data Types using DIA SDK #17

gwillcox-r7 opened this issue Sep 1, 2022 · 0 comments

Comments

@gwillcox-r7
Copy link

Right now the DIA SDK is only being run against ntoskrnl.exe, and not against other files such as win32kfull.sys. This means that often times more undocumented or hidden structures aren't being picked up and documented, despite tools from Microsoft themselves being available to gather this information.

Would like to propose that updates be made so that this tool is run against these extra files and the information be uploaded to the public website.

Speaking to the maintainers I was told that whilst one can do this with dia2dump.exe, they are using their own custom tool which uses the same DIA SDK that dia2dump.exe uses but outputs the data into YAML for easier parsing.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant