LAC-Japan / Ghidra_AntiDebugSeeker
Automatically identify and extract potential anti-debugging techniques used by malware.
☆16Updated 4 months ago
Alternatives and similar repositories for Ghidra_AntiDebugSeeker:
Users that are interested in Ghidra_AntiDebugSeeker are comparing it to the libraries listed below
- ☆24Updated 2 years ago
- Security Camp 2021 & GCC 2022☆110Updated 2 years ago
- cross-architecture static library detector for IoT malware☆36Updated last year
- Automatically identify and extract potential anti-debugging techniques used by malware.☆151Updated 4 months ago
- Rust symbol recovery tool☆45Updated last week
- LLVM-based ROP obfuscated compiler☆13Updated 3 years ago
- Make the Windows API in Ghidra easy to read and informative.☆27Updated 3 years ago
- Assets used in lecture "手を動かして理解するLinux Kernel Exploit" at SecurityCamp2023.☆12Updated last year
- ☆73Updated 8 months ago
- ☆47Updated last month
- Writeups for CTF challenges☆30Updated last year
- Native Python3 bindings for @horsicq's Detect-It-Easy☆62Updated 2 weeks ago
- Modified python version of Rolf Rolles' https://github.com/RolfRolles/HexRaysDeob to unflatten Emotet'S Control Flow Flattening☆25Updated 2 years ago
- An intuitive query API for IDA Pro☆155Updated last week
- Memory tampering tool for security assessment☆23Updated 4 months ago
- Ghidra Script for automated analysis of EMOTET☆17Updated 4 years ago
- Yet Another Memory Analyzer for malware detection☆179Updated 9 months ago
- Idiomatic Rust bindings for the IDA SDK, enabling the development of standalone analysis tools using IDA v9.x’s idalib☆141Updated last month
- Get information about stripped rust executables☆26Updated last week
- An extremely experimental Binary Ninja importer for the type layout information emitted by the -Zprint-type-sizes flag of the Rust compil…☆35Updated last year
- This repository contains an IDA processor for loading and disassembling compiled yara rules.☆40Updated 2 months ago
- Write dynamic binary analysis tools in Python☆104Updated 3 weeks ago
- Static Binary Instrumentation tool for Windows x64 executables☆198Updated last month
- A dark Nord theme port for Hex Rays IDA☆103Updated 2 years ago
- ☆145Updated last year
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆163Updated 3 weeks ago
- ☆46Updated 2 years ago
- IDA plugin helping reverse-engineering rust binaries☆15Updated 7 months ago
- This IDA plugin extends the functionality of the assembly and hex view. With this plugin, you can conveniently decode/decrypt/alter data …☆78Updated last month
- Artifacts for our RAID 2023 paper, "Xunpack: Cross-Architecture Unpacking for Linux IoT Malware"☆14Updated last year