JavaHammes / ZLinks
Z Anti-Anti-Debugger for Linux
☆58Updated 4 months ago
Alternatives and similar repositories for Z
Users that are interested in Z are comparing it to the libraries listed below
Sorting:
- A collection of Proof-of-Concept implementations of various anti-disassembly techniques for ARM32 and ARM64 architectures.☆72Updated 7 months ago
- Plugin interface for remote communications with Binary Ninja database and MCP server for interfacing with LLMs.☆49Updated 6 months ago
- LLDB based debugger for Linux Kernel☆27Updated 8 months ago
- Reverse engineering assistant that extracts strings and related pseudocode from a binary file.☆85Updated last week
- Reverse Shell - technique is commonly used in cyber attacks☆19Updated last year
- IDA plugin to recover source code from panic information on rust☆17Updated 7 months ago
- A Binary Ninja plugin to detect Themida, WinLicense and Code Virtualizer's obfuscated code locations.☆88Updated last year
- Native Rust bindings for @horsicq's Detect-It-Easy☆17Updated last month
- Binary Ninja plugin to deobfuscate strings obfuscated with the Garble project☆39Updated 9 months ago
- Templated Obfuscation example in C++ for protecting/hiding values in memory☆39Updated 10 months ago
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆42Updated 2 years ago
- A curated list of awesome resources related to anti virtualization techniques☆57Updated 4 months ago
- MCP for reverse engineering☆46Updated 8 months ago
- A high-performance C++ framework for emulating executable binaries☆128Updated 3 weeks ago
- This master thesis project continuously collects and analyses Microsoft Windows kernel drivers using static and dynamic methods to help s…☆21Updated last year
- Assisting Go Analysis and Reversing☆89Updated last month
- WinDbg-ext-MCP bridges your favorite LLM client (like Cursor, Claude, or VS Code) with WinDbg, enabling real-time, AI assisted kernel deb…☆50Updated 3 months ago
- ☆89Updated 10 months ago
- ☆17Updated last year
- ☆31Updated 9 months ago
- Windows kernel debugger for Linux hosts running Windows under KVM/QEMU☆104Updated last week
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆132Updated 8 months ago
- The Linux x86/x86-64 last chance debugging tool☆48Updated 3 years ago
- ☆28Updated 2 months ago
- Code proving a 25-year blind spot in all disassemblers. PoC for Intel x64/x86 “ghost instructions.”☆106Updated last month
- Generate a PDB file given the old PDB file and an address mapping☆50Updated 4 months ago
- bypassing intel txt's tboot integrity checks via coreboot shim☆83Updated 8 months ago
- A Rust crate for parsing Windows user minidumps.☆41Updated last year
- Deobfuscation library for PoisionPlug.SHADOW's ScatterBrain obfuscator☆71Updated 9 months ago
- Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75☆39Updated 2 months ago