apekros / binja_sigmaker
Create and find signatures in Binary Ninja
☆26Updated last year
Alternatives and similar repositories for binja_sigmaker:
Users that are interested in binja_sigmaker are comparing it to the libraries listed below
- Attempts to decrypt JM Xorstr in some x64 binaries☆51Updated 2 years ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆57Updated last year
- A PoC for requesting HWIDs directly from hardware, skipping any potential hooks or OS support.☆79Updated 4 years ago
- just proof of concept. hooking MmCopyMemory PG safe.☆69Updated last year
- This tool Decrypt and Extract the files from the EAC☆63Updated last year
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆71Updated last year
- 🎨 Seamlessly convert your favorite Visual Studio Code themes to IDA Pro themes.☆98Updated 11 months ago
- Discarded Section Manual Map☆65Updated 4 years ago
- BottlEye is a usermode emulator for the popular anti-cheat BattlEye☆42Updated 4 years ago
- A devirtualization engine for Themida.☆97Updated last year
- ☆27Updated last year
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆68Updated 2 years ago
- devirtualization vmprotect☆62Updated 2 years ago
- VM devirtualization PoC based on AsmJit and llvm☆113Updated 3 years ago
- Windows driver mapper via the UEFI☆45Updated 3 months ago
- ☆73Updated 10 months ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆85Updated last year
- Hygieia, a vulnerable driver traces scanner written in C++ as an x64 Windows kernel driver.☆142Updated 3 years ago
- Ghetto user mode emulation of Windows kernel drivers.☆132Updated 5 months ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆58Updated 8 months ago
- Kernel driver for detecting Intel VT-x hypervisors.☆178Updated last year
- Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6☆102Updated last year
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆52Updated 2 years ago
- Kernel ReClassEx☆65Updated last year
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆41Updated last year
- alternative smm driver for ryzen motherboards☆118Updated 5 months ago
- Simple IDA Pro plugin to download Unity debug symbols from their symbol server☆60Updated 11 months ago
- ☆38Updated last year
- A simple ida python script to find .data ptr☆50Updated last year
- Symbolic Execution based on lifting amd64 to z3☆26Updated 8 months ago