angr / fidget
A tool to add simple inline patches to a binary to rearrange its stack frames, and other things!
☆45Updated 2 years ago
Alternatives and similar repositories for fidget:
Users that are interested in fidget are comparing it to the libraries listed below
- KLEE-TAINT - Klee with taint analysis support☆72Updated 7 years ago
- Final project for the M.Sc. in Engineering in Computer Science at Università degli Studi di Roma "La Sapienza" (A.Y. 2016/2017).☆35Updated 7 years ago
- ropc-llvm is a PoC of a Turing complete ROP compiler with support for a subset of LLVM IR. It is an extension of ropc.☆67Updated 11 years ago
- Dynamic analysis of binary programs to retrieve function-related information (arity, type of parameters, coupling).☆67Updated 7 years ago
- A plugin to integrate an IPython kernel into Binary Ninja.☆29Updated 6 years ago
- REIL translation library☆36Updated 8 years ago
- Routines for hunting down kernel structs.☆40Updated 13 years ago
- AFL "mostly" ported to cygwin☆26Updated 8 years ago
- Some glue facilitating remote use of IDA (the Interactive DisAssembler) Python API.☆78Updated 4 years ago
- A monitoring script for AFL☆39Updated 8 years ago
- python library for dumping a linux process from memory☆34Updated 14 years ago
- Backwards program slice stitching for automatic CTF problem solving.☆51Updated 5 years ago
- Fuzzing scripts for the American Fuzzy Lop (AFL) fuzzer☆47Updated 8 years ago
- Automatic function exporting and linking for fuzzing cross-architecture binaries.☆50Updated 6 years ago
- Binary Analysis Platform☆73Updated 11 years ago
- ☆48Updated 7 years ago
- ARM rop chain gadget searcher☆37Updated 7 years ago
- libfuzzerfication - fuzzing for the rest of us!☆62Updated 8 years ago
- ☆28Updated 2 years ago
- Nosy Newt is a simple concolic execution tool for exploring the input space of a binary executable program based in Triton☆61Updated 7 years ago
- A ROP and binary analysis exploit challenge for edurange☆15Updated 9 years ago
- Proof of Concept files for SensePost's blog - Painless intro to the linux userland heap☆22Updated 7 years ago
- Use angr inside the radare2 debugger. Create an angr state from the current debugger state.☆34Updated 5 years ago
- Abstract library to generate angr states from a debugger state☆59Updated 4 years ago
- Symbolic execution for LLVM traces produced by PANDA☆40Updated 6 years ago
- ☆18Updated 6 years ago
- ☆26Updated 8 years ago
- A fully automatic fuzzing tool for Valgrind, unofficial mirror for http://esec-lab.sogeti.com/pages/fuzzgrind.html☆36Updated 9 years ago
- Bootloader research tools (very much a work in progress)☆37Updated 5 years ago
- Dominator Tree LLVM Pass to Test Satisfiability☆47Updated 8 years ago