We have already published short tutorial on Windows kernel debugging with IDA and VMWare on our site, but the debugging experience can still be improved.
VMWares GDB stub is very basic, it doesnt know anything about processes or threads (for Windows guests), so for anything high-level well need to do some extra work. We will show how to get the loaded module list and load symbols for all them using IDAPython.
There are 31,320 total registered users.
[+] expand