angea / corkamiLinks
Automatically exported from code.google.com/p/corkami
☆56Updated 4 years ago
Alternatives and similar repositories for corkami
Users that are interested in corkami are comparing it to the libraries listed below
Sorting:
- Official x64dbg plugin for Binary Ninja☆80Updated last month
- SentinelOne's KeRnel Exploits Advanced Mitigations☆54Updated 6 years ago
- Learn the fundamentals of Binary Auditing. Know how HLL mapping works, get more inner file understanding than ever.☆81Updated 4 years ago
- My repository to upload drivers from different books and all the information related to windows internals.☆156Updated 5 years ago
- Set of antianalysis techniques found in malware☆132Updated last year
- Parsers for custom malware formats ("Funky malware formats")☆96Updated 3 years ago
- POC viruses I have created to demo some ideas☆59Updated 5 years ago
- ☆66Updated 6 years ago
- ☆106Updated 6 years ago
- Notes on using the Python bindings for the Unicorn Engine☆75Updated 5 years ago
- Go Lang Portable Executable Parser☆39Updated 4 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆75Updated 10 years ago
- Ablation is a tool for augmenting static analysis by extracting information at runtime, and importing it into IDA. It can resolve virtual…☆50Updated 8 years ago
- Hypervisor-based debugger☆189Updated 4 years ago
- ☆74Updated 4 years ago
- Blackhat 2012 Sample Codes☆93Updated 8 years ago
- ☆71Updated last year
- ☆43Updated 3 years ago
- Use this library to automatically extract PE files compressed with aplib from a binary blob.☆34Updated 6 years ago
- A novel technique to hide code from debuggers & disassemblers☆156Updated 9 months ago
- Import DynamoRIO drcov code coverage data into Ghidra☆43Updated last year
- Automatically rebuild Import Address Table for dumped PE file. With python bindings!☆119Updated 6 years ago
- MSDN in a zeal docset☆48Updated 3 years ago
- Zerokit/GAPZ rootkit (non buildable and only for researching)☆182Updated 6 years ago
- Static unpacker for FinSpy VM☆101Updated 3 years ago
- A project that aims to automatically devirtualize code that has been virtualized using x86virt☆126Updated 2 years ago
- Driver Initial Reconnaissance Tool☆123Updated 5 years ago
- IDA Plugin which decodes Windows Device I/O control code into DeviceType, FunctionCode, AccessType and MethodType.☆110Updated last year
- WinDbg workplace settings that I use for debugging☆16Updated 7 years ago
- Function signature matching and signature generation plugin for Binary Ninja☆70Updated 8 months ago