LLVMParty / UnsupportedInstructionsLiftingToLLVMLinks
Using Zydis and LLVM to lift unsupported instructions to LLVM-IR
☆30Updated 4 years ago
Alternatives and similar repositories for UnsupportedInstructionsLiftingToLLVM
Users that are interested in UnsupportedInstructionsLiftingToLLVM are comparing it to the libraries listed below
Sorting:
- Binary Ninja plugin for automating VMProtect analysis☆63Updated 3 years ago
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆75Updated 6 years ago
- ☆25Updated 6 months ago
- ☆93Updated 5 years ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆64Updated last year
- Deobfuscation of Semi-Linear Mixed Boolean-Arithmetic Expressions☆79Updated last week
- VM devirtualization PoC based on AsmJit and llvm☆119Updated 4 years ago
- VTIL command line utility☆27Updated 3 years ago
- Port of MBA Solver SiMBA to C/C++ (MBA deobfuscation in real world applications)☆104Updated last month
- obfuscation that aims to not stand out☆23Updated 3 years ago
- vmp2.x devirtualization☆88Updated last year
- Hyper-V related resources☆31Updated last year
- Code virtualizer☆26Updated 9 years ago
- A simple pluggable tool to convert an unrolled TritonAST to LLVM-IR, optimize it and get back to TritonAST.☆38Updated 5 years ago
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆35Updated last year
- ☆46Updated last year
- This repo contains the tests and results that were done during the research of SATURN☆43Updated 5 years ago
- Lifting from native architecture to VTIL. (WIP)☆77Updated 3 years ago
- IDA strike-out: A Hex-Rays decompiler plugin to patch the Ctree☆124Updated 3 weeks ago
- PoC for a taint based attack on VMProtect☆123Updated 6 years ago
- IDA-names automatically renames pseudocode windows with the current function name.☆60Updated 3 years ago
- This is the PoC of a dynamic lifter and deobfuscator with collecting trace.☆36Updated 2 years ago
- IDA Plugin that fills in missing indirect CALL & JMP target information☆140Updated 11 months ago
- A documentation of several Tigress obfuscation passes and an attempt to simplify Mixed Boolean-Arithmetic (MBA) expressions.☆22Updated 4 years ago
- ☆30Updated 3 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated 2 years ago
- A large collection of 32bit and 64bit PE files useful for verifying the correctness of bin2bin transformations☆62Updated last year
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆70Updated 3 years ago
- MBA deobfuscator via Program Synthesis and Term Rewriting☆55Updated 2 months ago
- ☆25Updated 2 months ago