Fare9 / elfparser_eLinks
Example of an ELF parser to learn about the ELF format
☆10Updated last year
Alternatives and similar repositories for elfparser_e
Users that are interested in elfparser_e are comparing it to the libraries listed below
Sorting:
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆42Updated 2 years ago
- Windows Minidump loader for Ghidra☆29Updated 3 years ago
- Static analysis tool based on clang, which detects source-to-binary information leaks in C and C++ projects☆86Updated 3 years ago
- A Linux x86/x86-64 tool to trace registers and memory regions.☆40Updated 3 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated 2 years ago
- LLDB based debugger for Linux Kernel☆27Updated 8 months ago
- A Unit-Based Symbolic Execution Method for Detecting Memory Corruption Vulnerabilities in Executable Codes☆43Updated 2 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆74Updated 2 years ago
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆34Updated last year
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆63Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆27Updated 2 years ago
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆46Updated 3 years ago
- Extract data of TTD trace file to a minidump☆30Updated 2 years ago
- A code parser for C-Style header files that lets you to parse function's prototypes and data types used in their parameters.☆94Updated 3 years ago
- Python bindings for BochsCPU☆37Updated 4 months ago
- This master thesis project continuously collects and analyses Microsoft Windows kernel drivers using static and dynamic methods to help s…☆21Updated last year
- x86 and x64 assembly "read-eval-print loop" for Windows☆33Updated 8 years ago
- ☆35Updated 3 years ago
- Symbolic execution for RISC-V machine code based on the formal LibRISCV ISA model☆54Updated 6 months ago
- Binary Ninja plugin to perform automated analysis of Windows drivers☆18Updated 6 years ago
- ☆16Updated 3 years ago
- Plugin interface for remote communications with Binary Ninja database and MCP server for interfacing with LLMs.☆49Updated 6 months ago
- A list of awesome resources about HyperDbg☆76Updated 3 months ago
- A driver to implement IOCTL hooking☆27Updated 3 years ago
- Python interface for Binexport, the Bindiff export format☆17Updated this week
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆49Updated 4 years ago
- A Rust crate for parsing Windows user minidumps.☆41Updated last year
- A set of small utilities, helpers for PIN tracers☆35Updated 2 months ago
- AMD SVM hypervisor rootkit proof of concept☆48Updated 2 years ago
- dynamic binary instrumentation, analysis, and patching framework☆98Updated last week