BitsOfBinary / ghidra-scripts
My collection of scripts for Ghidra (https://github.com/NationalSecurityAgency/ghidra)
☆10Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for ghidra-scripts
- Carve files for MFT entries (eg. blkls output or memory dumps). Recovers filenames (long & short), timestamps ($STD & $FN) and data if re…☆21Updated 5 years ago
- ☆66Updated last year
- A powershell parser for https://github.com/ufrisk/MemProcFS☆43Updated 3 years ago
- Parse Microsoft shim databases☆29Updated 2 months ago
- Generates YARA rules to detect malware using API hashing☆17Updated 3 years ago
- Toolset to analyze disks encrypted with McAFee FDE technology☆17Updated 3 years ago
- ☆31Updated 2 years ago
- Utilities for working with vivisect☆23Updated 3 weeks ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- A set of tools for collecting forensic information☆26Updated 4 years ago
- Capa analysis importer for Ghidra.☆61Updated 3 years ago
- ☆21Updated last month
- Scripts, Yara rules and other files developed during malware investigations☆24Updated 2 years ago
- ☆12Updated 5 years ago
- Scans through registry hives outputting entropy values for key/values, dumps binary contents to files...we are looking for those "fileles…☆11Updated 5 years ago
- ☆48Updated 4 years ago
- SPI flash read MitM attack PoC☆36Updated 2 years ago
- Scripts to aid analysis of files obfuscated with ScatterBee.☆15Updated last year
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆28Updated 4 years ago
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆27Updated 2 years ago
- Radare2 Metadata Extraction to Elasticsearch☆21Updated 6 months ago
- ☆15Updated 2 years ago
- Go Lang Portable Executable Parser☆37Updated 3 years ago
- IDAPython scripts☆15Updated 7 years ago
- ☆18Updated 4 years ago
- A python script that can be used to scan data within in an IDB using Yara.☆22Updated 6 years ago
- ☆26Updated last year
- VDA Labs scripts for the GHIDRA reverse engineering toolset☆29Updated 5 years ago
- ☆14Updated 2 years ago
- ☆55Updated last month