Qubasa / 0packLinks
A novel technique to hide code from debuggers & disassemblers
☆159Updated last year
Alternatives and similar repositories for 0pack
Users that are interested in 0pack are comparing it to the libraries listed below
Sorting:
- Hypervisor-Level Debugger based on Radare2 / LibVMI, using VMI IO and debug plugins☆134Updated 6 years ago
- An event driven multi-core process debugging, tracing, and manipulation framework.☆175Updated 5 years ago
- ANBU (Automatic New Binary Unpacker) a tool for me to learn about PIN and about algorithms for generic unpacking.☆92Updated 6 years ago
- Example code from "Programming Linux Anti-Reversing Techniques"☆98Updated 8 years ago
- grap: define and match graph patterns within binaries☆156Updated 3 years ago
- POC viruses I have created to demo some ideas☆59Updated 5 years ago
- Hypervisor-based debugger☆190Updated 5 years ago
- Zerokit/GAPZ rootkit (non buildable and only for researching)☆184Updated 6 years ago
- ☆74Updated 5 years ago
- grap: define and match graph patterns within binaries☆173Updated 4 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆170Updated 9 years ago
- A user-friendly fuzzing and crash triage tool for Windows☆132Updated 6 years ago
- IDAtropy is a plugin for Hex-Ray's IDA Pro designed to generate charts of entropy and histograms using the power of idapython and matplot…☆142Updated 4 years ago
- Binary Ninja Debugger Plugin☆143Updated 3 years ago
- A project that aims to automatically devirtualize code that has been virtualized using x86virt☆126Updated 3 years ago
- Kernel Address Space Layout Randomization (KASLR) Recovery Software☆98Updated 9 years ago
- Hardcore corruption of my execve() vulnerability in WSL☆216Updated 7 years ago
- Decompiler for x86 and x86-64 ELF binaries☆221Updated 6 years ago
- LibVMI-based debug server, implemented in Python. Building a guest aware, stealth and agentless full-system debugger☆220Updated 5 years ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆118Updated 7 years ago
- The first Linux hooking framework to allow merging two binary files into one!☆97Updated 7 months ago
- Collection of VC++ example applications to demonstrate Win10 userland heap behavior (BEA & FEA)☆85Updated 9 years ago
- IDA plugins and scripts for analyzing register usage frame☆181Updated 2 years ago
- My repository to upload drivers from different books and all the information related to windows internals.☆163Updated 6 years ago
- Binary Ninja plugin that syncs WinDbg to Binary Ninja☆47Updated 7 years ago
- Scripts for disassembling VBScript p-code in the memory to aid in exploits analysis☆86Updated 3 years ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆160Updated 5 years ago
- Binary Ninja Posters☆35Updated 5 years ago
- Attacking the Core associated source files☆88Updated 8 years ago
- x86 bootloader emulation with Miasm (case of NotPetya)☆43Updated 6 years ago