KVM-VMI / nitroLinks
☆47Updated 6 years ago
Alternatives and similar repositories for nitro
Users that are interested in nitro are comparing it to the libraries listed below
Sorting:
- KVM-based virtual machine introspection for malware analysis☆29Updated 8 years ago
- LibVMI Python bindings☆33Updated 7 months ago
- Using LibVMI to detect malware☆31Updated 3 years ago
- Fork of KVM with Virtual Machine Introspection patches☆36Updated last year
- ☆62Updated 2 years ago
- Rootkit Detector for UNIX☆61Updated last year
- Fork of QEMU with Virtual Machine Introspection patches☆13Updated last year
- VMI-Unpack - A Virtual Machine Introspection (VMI) based generic unpacker.☆55Updated 5 years ago
- Implementation of a thin hypervisor☆42Updated 9 years ago
- Dynamic analysis of binary programs to retrieve function-related information (arity, type of parameters, coupling).☆67Updated 7 years ago
- A feature-complete reference implementation of a modern Xen VMI debugger. ARCHIVED: Development continues at https://github.com/spencermi…☆78Updated 4 years ago
- Virtual Machine Introspection (VMI) project☆15Updated 10 years ago
- ☆90Updated last year
- PoC LibVMI-based GDB server for virtual machines☆53Updated 7 years ago
- Linux kernel rootkit to hide certain files and processes.☆36Updated 11 years ago
- Re-randomizing the memory layout of a process at runtime☆21Updated 9 years ago
- PathArmor context-sensitive CFI implementation☆45Updated 9 years ago
- [ARCHIVED] mov rax, ${Thalium/IceBox}; jmp rax;☆74Updated 6 years ago
- CansecWest2016 - Getting Physical: Extreme Abuse of Intel Based Paging Systems☆28Updated 9 years ago
- Example program using eBPF to log data being based in using shell pipes☆41Updated 4 years ago
- ☆52Updated 6 years ago
- Heap analysis tooling for ptmalloc☆45Updated 3 years ago
- QTrace, a "zero knowledge" system call tracer☆53Updated 10 years ago
- Xenpwn is a toolkit for memory access tracing using hardware-assisted virtualization☆144Updated 8 years ago
- Shadow-Box: Lightweight and Practical Kernel Protector for x86 (Presented at BlackHat Asia 2017/2018, beVX 2018 and HITBSecConf 2017)☆186Updated 5 years ago
- ELF/PE/Mach-O parsing library☆50Updated last year
- Changing memory protection in an arbitrary process☆47Updated 6 years ago
- libemu shim layer and win32 environment for Unicorn Engine☆71Updated 8 years ago
- Linux malware analysis based on Cuckoo Sandbox.☆40Updated 2 years ago
- SAFE embeddings to match functions in yara☆100Updated 5 years ago