AGDCservices / Ghidra-ScriptsLinks
malware analysis scripts for Ghidra
☆81Updated 2 years ago
Alternatives and similar repositories for Ghidra-Scripts
Users that are interested in Ghidra-Scripts are comparing it to the libraries listed below
Sorting:
- LERN GHIDRA☆92Updated 3 months ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆170Updated last month
- Ghidra scripts for malware analysis☆102Updated last year
- An IDA Pro extension for easier (malware) reverse engineering☆115Updated 3 years ago
- Notes on using the Python bindings for the Unicorn Engine☆81Updated 5 years ago
- Code snips and notes☆137Updated 3 years ago
- ☆73Updated 2 years ago
- FindCrypt for Ghidra written in Python☆26Updated 5 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆65Updated 3 years ago
- Writeups for CTF challenges☆33Updated 2 years ago
- API Logger for Windows Executables☆80Updated 5 years ago
- Malware dynamic instrumentation tool based on frida framework☆110Updated 5 years ago
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆128Updated 3 years ago
- Analyses in IDA/Hex-Rays☆84Updated 2 years ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆160Updated 5 years ago
- Make your Ghidra Lazy!☆154Updated 5 years ago
- Robust Automated Malware Unpacker☆86Updated 2 years ago
- Set of antianalysis techniques found in malware☆132Updated 2 years ago
- Scripts to run within Ghidra, maintained by the Trellix ARC team☆122Updated 5 months ago
- Research notes☆131Updated last year
- Ghidra plugin for https://analyze.intezer.com☆72Updated 3 years ago
- IDA python plugin to scan binary with Yara rules☆180Updated last year
- Native Python3 bindings for @horsicq's Detect-It-Easy☆76Updated 6 months ago
- Official x64dbg plugin for Binary Ninja☆82Updated 8 months ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆71Updated last year
- Do you want to use x64dbg instead of immunity debugger? oscp eCPPTv2 buffer overflow exploits pocs☆90Updated last year
- Extract labels from IDA, Ghidra, Binary Ninja, and Relyze files and export x64dbg database. Including radare2 main address.☆113Updated 2 years ago
- How to retro theme your Ghidra☆35Updated last month
- IDA Pro plugin for recognizing known hashes of API function names☆82Updated 3 years ago
- HashDB API hash lookup plugin for IDA Pro☆346Updated 2 months ago