BreakingMalware / SelfieLinks
A Tool to Unpack Self-Modifying Code using DynamoRIO
☆140Updated 8 years ago
Alternatives and similar repositories for Selfie
Users that are interested in Selfie are comparing it to the libraries listed below
Sorting:
- Fuzz and Detect "Use After Free" vulnerability in win32k.sys ( Heap based )☆133Updated 9 years ago
- ☆179Updated 6 years ago
- ☆91Updated 8 years ago
- qb-sync is an open source tool to add some helpful glue between IDA Pro and Windbg. Its core feature is to dynamically synchronize IDA's …☆120Updated 9 years ago
- Local Kernel Debugger (LKD) is a python wrapper around dbgengine.dll☆92Updated 8 years ago
- Any useful windbg plugins I've written.☆116Updated 7 years ago
- IDA Pro plugin making easier work on BinDiff results☆80Updated 9 years ago
- PEDA-like debugger UI for WinDbg☆204Updated last year
- IDAtropy is a plugin for Hex-Ray's IDA Pro designed to generate charts of entropy and histograms using the power of idapython and matplot…☆140Updated 4 years ago
- Hex-Rays Decompiler Enhanced View☆179Updated 6 years ago
- Automatically exported from code.google.com/p/ioctlfuzzer☆165Updated 10 years ago
- Runtime Prevention of Return-Oriented Programming Attacks☆82Updated 10 years ago
- flare-dbg is a project meant to aid malware reverse engineers in rapidly developing debugger scripts.☆150Updated 7 years ago
- Toolkit for enriching and speeding up static malware analysis☆168Updated 3 years ago
- A pintool in order to unpack malware☆234Updated 8 years ago
- C++-based shellcode builder☆114Updated 4 years ago
- Name substitution plugin for IDA Pro☆146Updated 7 years ago
- BinSourcerer☆90Updated 3 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆238Updated 8 years ago
- A branch-monitor-based solution for process monitoring.☆133Updated 5 years ago
- ☆115Updated 8 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆164Updated 8 years ago
- IDA Plugin which decodes Windows Device I/O control code into DeviceType, FunctionCode, AccessType and MethodType.☆110Updated last year
- kernel exploitation helper class☆77Updated 8 years ago
- Intercept arbitrary functions at run-time, without knowing their typedefs☆87Updated 8 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆435Updated 6 years ago
- Python scripts for reverse engineering.☆184Updated 4 years ago
- Some example source code for fixed IE11 sandbox escapes.☆141Updated 10 years ago
- The IDA Toolbag is a plugin providing supplemental functionality to Hex-Rays IDA Pro disassembler.☆314Updated 8 years ago
- A mutation based user mode (ring3) dumb in-memory Windows Kernel (IOCTL) Fuzzer/Logger. This script attach it self to any given process a…☆67Updated 11 years ago