AndreaNaspi / WhiteRabbitTracker
WhiteRabbitTracker: Analyzing malware evasions with information flow tracking
☆17Updated 3 years ago
Alternatives and similar repositories for WhiteRabbitTracker:
Users that are interested in WhiteRabbitTracker are comparing it to the libraries listed below
- Forecasting Malware Capabilities From Cyber Attack Memory Images☆32Updated 2 years ago
- Research tool able to detect and mitigate evasion techniques used by malware in-the-wild☆11Updated 2 years ago
- The Tangled Genealogy of IoT Malware☆12Updated 4 years ago
- Effects of packers on machine-learning-based malware classifiers that use only static analysis☆86Updated 10 months ago
- Arancino is a dynamic protection framework that defends Intel Pin against anti-instrumentation attacks.☆72Updated 2 years ago
- automated-arancino is a lightweight analysis framework to automate malware experiments.☆15Updated 8 years ago
- Robust Automated Malware Unpacker☆84Updated last year
- SAFE embeddings to match functions in yara☆100Updated 5 years ago
- Robust API monitoring system presented in the paper "Designing Robust API Monitoring Solutions" (IEEE TDSC)☆24Updated 3 years ago
- Library to hide DBI artifacts when using Intel Pin. Code from the ASIA CCS 2019 paper "SoK: Using Dynamic Binary Instrumentation for Secu…☆22Updated 5 years ago
- BE-PUM (Binary Emulation for PUshdown Model) is a project for analyzing and detecting binary files. Its main focus is on generating CFG (…☆19Updated 7 years ago
- Automated Yara Rule generation using Biclustering☆66Updated 3 years ago
- Cross-Architecture Function Similarity Search Model - https://arxiv.org/abs/2310.03605☆14Updated last year
- ☆24Updated 2 years ago
- Gadget displacement on top of IPR (In-Place Randomization) against Code Reuse Attack☆26Updated 8 years ago
- Code for the paper "Investigating Graph Embedding Neural Networks with Unsupervised Features Extraction for Binary Analysis"☆63Updated 2 years ago
- The prototype system of paper Similarity Metric Method for Binary Basic Blocks of Cross-Instruction Set Architecture.☆28Updated 2 years ago
- A framework for static analysis of ROP exploits and programs☆40Updated 5 years ago
- This repository contains dynamic and static tools for IoT malware analysis☆21Updated 2 years ago
- The MinHash-based Code Relationship & Investigation Toolkit (MCRIT) is a framework created to simplify the application of the MinHash alg…☆91Updated last month
- ☆24Updated 6 years ago
- VMI-Unpack - A Virtual Machine Introspection (VMI) based generic unpacker.☆55Updated 5 years ago
- ☆58Updated 4 years ago
- Corana is a Dynamic Symbolic Execution Engine for ARM Cortex-M aiming to incrementally reconstruct the precise Control Flow Graph (CFG) o…☆28Updated last year
- ☆11Updated 5 years ago
- ☆20Updated 3 years ago
- Collection of DBI evasion techniques☆14Updated 3 years ago
- Extensible Platform for Malware Analysis☆17Updated 4 years ago
- LibVMI Python bindings☆33Updated 5 months ago
- This project fully automates the process of analyzing and exploiting IoT malware to find live CnC servers.☆41Updated 9 months ago