AzzOnFire / yarkaLinks
IDA plugin for YARA signature creation
☆11Updated 7 months ago
Alternatives and similar repositories for yarka
Users that are interested in yarka are comparing it to the libraries listed below
Sorting:
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆65Updated last year
- ☆19Updated 3 months ago
- devirtualization vmprotect☆62Updated 2 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Easy-to-use IDA plugin for code emulation☆33Updated last year
- IDA Type Info Libraries for RE☆29Updated 4 months ago
- Just an example of a well-known technique to detect memory tampering via Windows Working Sets.☆16Updated 3 years ago
- Extensions for x64dbg written in Rust: Telescope and Unicorn powered disassembly☆25Updated 2 years ago
- IDA plugin to deobfuscate emotet CFF☆18Updated 3 years ago
- A project on the Unicorn emulator to emulate the code of Pe files in windows☆27Updated 8 months ago
- Elevate arbitrary MSR writes to kernel execution.☆36Updated last year
- ☆22Updated last year
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago
- ☆15Updated 2 years ago
- Bypassing kernel patch protection runtime☆20Updated 2 years ago
- ☆31Updated 3 years ago
- Binary Ninja plugin for automating VMProtect analysis☆60Updated 2 years ago
- X86/X64 Hardware Breakpoint Manager☆41Updated 3 years ago
- How Meltdown and Spectre haunt Anti-Cheat: DVRT details☆21Updated 9 months ago
- IDA Python deobfuscation script for ConfuserEx binaries☆35Updated 2 years ago
- This is the PoC of a dynamic lifter and deobfuscator with collecting trace.☆36Updated last year
- IDA plugin for analyzing, filtering and tracing functions and call flows☆14Updated last year
- EDR PoC WIP LLC☆11Updated last year
- paste string formatted byte data block into x64dbg easy.☆39Updated 4 years ago
- Windows kernel driver template for cmkr and llvm-msvc.☆34Updated last year
- api-tracer is a tiny (useless) tracer☆14Updated 2 years ago
- Process Creation, Image Load and Thread Creation Notification☆12Updated last year
- ☆36Updated 2 years ago
- x86-64 user mode emulation using Zydis☆46Updated 4 months ago
- Symbolic Execution based on lifting amd64 to z3☆27Updated 11 months ago