Colton1skees / Dna
LLVM based static binary analysis framework
☆192Updated last month
Related projects ⓘ
Alternatives and complementary repositories for Dna
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆148Updated 10 months ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆226Updated 3 months ago
- Debugger Anti-Detection Benchmark☆291Updated 11 months ago
- Repository for the code snippets from the AllThingsIDA video channel☆90Updated this week
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆115Updated 2 months ago
- compile-time control flow obfuscation using mba☆175Updated last year
- ☆182Updated last year
- Hardening code obfuscation against automated attacks☆129Updated 9 months ago
- aiDAPal is an IDA Pro plugin that uses a locally running LLM that has been fine-tuned for Hex-Rays pseudocode to assist with code analysi…☆166Updated this week
- IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformati…☆126Updated 2 weeks ago
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆163Updated 10 months ago
- Efficient Deobfuscation of Linear Mixed Boolean-Arithmetic Expressions☆144Updated last year
- C++ library for parsing and manipulating PE files statically and dynamically.☆87Updated last year
- Native code virtualizer for x64 binaries☆403Updated this week
- Port of MBA Solver SiMBA to C/C++☆76Updated 2 weeks ago
- Deobfuscation via optimization with usage of LLVM IR and parsing assembly.☆404Updated this week
- IDA Plugin that fills in missing indirect CALL & JMP target information☆115Updated last year
- Collection of hypervisor detections☆189Updated last month
- Windows kernel debugger for Linux hosts running Windows under KVM/QEMU☆57Updated 3 weeks ago
- Nyxstone: assembly / disassembly library based on LLVM, implemented in C++ with Rust and Python bindings, maintained by emproof.com☆321Updated this week
- Efficient general mixed boolean-arithmetic (MBA) simplifier☆75Updated last week
- An x86-64 Code Virtualizer☆110Updated last month
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆111Updated 2 weeks ago
- x86-64 code/pe virtualizer☆160Updated 3 months ago
- The Windbg extension that implements commands helpful to study Hyper-V on Intel processors.☆130Updated last month
- IDA Pro plugin to make bitfield accesses easier to grep☆229Updated 7 months ago
- Reimplementation of Microsoft's Warbird obuscator☆101Updated 4 months ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆261Updated last month
- VM devirtualization PoC based on AsmJit and llvm☆104Updated 3 years ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆267Updated last year