AcademySkillsDevelopment

WinDiff

Security researchers and low-level Windows developers use it to see what changed in Windows binaries between versions.

  • Recommendedour rating
  • 390gitHub stars
  • GPL-3.0licence
  • 2 days agolast update
git clone https://github.com/ergrelet/windiff.git

What it does

An open-source tool for browsing and comparing symbol, type and syscall information of Microsoft Windows binaries across OS versions. A Rust CLI builds the databases from a configuration file, and a Next.js web frontend lets you view and compare them, with LLM support.

Use cases

  1. 01Compare syscalls between two Windows versions
  2. 02Browse reconstructed types of a system binary
  3. 03Check which symbols were added in a new update

Questions about
WinDiff.

What is WinDiff used for?

Security researchers and low-level Windows developers use it to see what changed in Windows binaries between versions. An open-source tool for browsing and comparing symbol, type and syscall information of Microsoft Windows binaries across OS versions. A Rust CLI builds the databases from a configuration file, and a Next.js web frontend lets you view and compare them, with LLM support.

How do I install WinDiff?

Run this in your terminal: git clone https://github.com/ergrelet/windiff.git

Is WinDiff open source?

Yes. The code is on GitHub (ergrelet/windiff) under the GPL-3.0 licence.

Is WinDiff safe to use?

It passed our automatic scan for credential theft, hidden instructions and risky install commands. Third party open source software. Sabemos AI does not maintain it. Check the code and permissions before you connect it to company data.