MrRoy09 / VMwhereLinks
LLVM based obfuscation engine
☆109Updated 7 months ago
Alternatives and similar repositories for VMwhere
Users that are interested in VMwhere are comparing it to the libraries listed below
Sorting:
- binary instrumentation, analysis, and patching framework☆100Updated last week
- an obfuscator based on LLVM which can obfuscate the program execution trajectory☆106Updated 4 years ago
- Disassembler for Zeus VM custom instruction set☆30Updated last year
- Remove WPP calls from hexrays decompiled code☆56Updated last week
- Another LLVM-obfuscator based on LLVM-17. A fork of Arkari☆110Updated last year
- ☆31Updated 3 weeks ago
- Implementation of sllvm obfuscator☆66Updated 3 years ago
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆49Updated 4 years ago
- Generate a PDB file given the old PDB file and an address mapping☆51Updated 6 months ago
- LLDB based debugger for Linux Kernel☆28Updated 10 months ago
- A set of LLVM and GCC based plugins that perform code obfuscation.☆138Updated 3 months ago
- Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in …☆52Updated last month
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆48Updated 3 years ago
- ANY.RUN sandbox detection collection☆23Updated last year
- Playing with LLVM passes☆40Updated 2 years ago
- llvm powered deobfuscation of a vm-based protection☆46Updated 9 months ago
- This repo contains EXPs about Vulnerable Windows Driver☆47Updated last year
- Report and exploit of CVE-2024-21305.☆38Updated 2 years ago
- A KISS Rust crate to parse Windows kernel crash-dumps created by Windows & its debugger.☆42Updated last month
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆68Updated 2 years ago
- Emulate Drivers in RING3 with self context mapping or unicorn☆21Updated last year
- An x86-64 code virtualizer for VM based obfuscation☆171Updated last year
- Assisting Go Analysis and Reversing☆96Updated 2 months ago
- Yet another LLVM-based obfuscator☆124Updated last year
- Rust library for lifting raw binary data to LLVM IR☆63Updated 6 months ago
- Cargo subcommand to build a crate into shellcode☆26Updated last year
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆71Updated 5 months ago
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆41Updated 2 years ago
- devirtualization vmprotect☆65Updated 2 years ago
- Binary Ninja plugin for automating VMProtect analysis☆64Updated 3 years ago