ZPetricusic / defender_signature_parserLinks
Short Python script for parsing Defender VDM signature files.
☆10Updated last year
Alternatives and similar repositories for defender_signature_parser
Users that are interested in defender_signature_parser are comparing it to the libraries listed below
Sorting:
- Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book☆113Updated last year
- ☆90Updated 8 months ago
- a tiny program to consume from ETW providers for research☆52Updated 9 months ago
- AppContainer tools for launching sandboxed win32 apps, changing ACL permissions and learning from ETW traces.☆27Updated 5 months ago
- ☆32Updated 8 months ago
- rpv-web is a browser based frontend for the rpv library☆25Updated 5 months ago
- Proof-of-concept modular implant platform leveraging v8☆56Updated 7 months ago
- Rule Engine for Dynamic Malware Analysis and Research☆25Updated 6 months ago
- Windows kernel PDB data parsed into YAML☆41Updated this week
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆42Updated last year
- bootloaders.io is a curated list of known malicious bootloaders for various operating systems. The project aims to assist security profes…☆68Updated 2 years ago
- Deobfuscation library for PoisionPlug.SHADOW's ScatterBrain obfuscator☆64Updated 7 months ago
- ☆56Updated 2 years ago
- Scripts from Ghidra Golf competitions☆34Updated 2 years ago
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆56Updated 3 years ago
- Recon 2023 slides and code☆80Updated 2 years ago
- bypassing intel txt's tboot integrity checks via coreboot shim☆83Updated 7 months ago
- A Rust crate for parsing Windows user minidumps.☆41Updated last year
- Find RSA primes in files☆20Updated 3 years ago
- BINARLY Research Tools and PoCs☆38Updated last year
- ☆20Updated 2 years ago
- Binary code coverage visualizer plugin for Ghidra - just without crashes on unknown insns☆19Updated 11 months ago
- ☆74Updated last year
- Winbindex bot to pull in binaries for specific releases☆48Updated 2 years ago
- Powershell Linter☆84Updated this week
- A feed of malware samples curated from threat intelligence sources.☆28Updated 2 years ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆130Updated this week
- ☆50Updated 7 months ago
- CTF Challenge for CSAW Finals 2021☆12Updated 3 years ago
- How to retro theme your Ghidra☆35Updated 2 weeks ago