DenuvoSoftwareSolutions / GAMBALinks
Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA
☆199Updated 2 years ago
Alternatives and similar repositories for GAMBA
Users that are interested in GAMBA are comparing it to the libraries listed below
Sorting:
- MODeflattener deobfuscates control flow flattened functions obfuscated by OLLVM using Miasm.☆203Updated 4 years ago
- Assets for the "Tickling VMProtect with LLVM" blog post.☆166Updated 4 years ago
- LLVM based "VM" obfuscator☆152Updated 4 years ago
- Hex-Rays OLLVM Deobfuscator and MicroCode Explorer☆180Updated 5 years ago
- Port of MBA Solver SiMBA to C/C++ (MBA deobfuscation in real world applications)☆106Updated 3 months ago
- Efficient Deobfuscation of Linear Mixed Boolean-Arithmetic Expressions☆181Updated 2 years ago
- IDA Pro plugin that displays all comments in a database☆74Updated last week
- Find crypto constants IDA 7.x plugin☆122Updated 3 years ago
- Control Flow Flattening Deobfuscator for Obfuscator-LLVM as a plugin for IDA Pro.☆90Updated 9 months ago
- Taint Analysis Engine and Trace Exploration : Overcome Obfuscation☆52Updated 3 months ago
- IDA plugin that allows connecting to third party Lumina servers☆143Updated last month
- IdaClu is a version agnostic IDA Pro plugin for grouping similar functions. Pick an existing grouping algorithm or create your own.☆180Updated last week
- My toy llvm pass☆139Updated 3 years ago
- IDA Plugin that fills in missing indirect CALL & JMP target information☆141Updated last year
- silent syscall hooking without modifying sys_call_table/handlers via patching exception handler☆152Updated last year
- IDA Pro plugin for reconstructing original .proto files from binary.☆298Updated 7 months ago
- ☆62Updated last year
- fork 自 https://gitlab.com/eshard/d810 添加了参考文章、测试样本,作为备份。☆16Updated 4 years ago
- Kernel mode to user mode so injection☆91Updated 5 years ago
- D-810 is an IDA Pro plugin which can be used to deobfuscate code at decompilation time by modifying IDA Pro microcode.☆64Updated 4 years ago
- How to setup Pycharm to run scripts in IDA using the Run menu (or a keybind)☆42Updated last year
- D810-ng (Next Generation) is an updated, tested, refactored, and optimized IDA Pro plugin used to deobfuscate code at decompilation time …☆100Updated this week
- Symbol Recovery Tool for Nuitka Binaries☆78Updated last year
- An IDA pro plugin to display user-added comments in disassembly and pseudocode views.☆89Updated 2 years ago
- Greybox Synthesizer geared for deobfuscation of assembly instructions.☆165Updated 11 months ago
- IDA strike-out: A Hex-Rays decompiler plugin to patch the Ctree☆126Updated 2 months ago
- IDA Domain API - Python interface for IDA Pro reverse engineering platform☆235Updated this week
- Deobfuscate OLLVM Bogus Control Flow via angr☆68Updated 4 years ago
- FindFunc is an IDA Pro plugin to find code functions that contain a certain assembly or byte pattern, reference a certain name or string,…☆354Updated 2 months ago
- A static devirtualizer for VMProtect x64 3.x. powered by VTIL.☆24Updated 7 months ago