calware / Deobfuscation
Binary Deobfuscation Series
☆22Updated 5 years ago
Alternatives and similar repositories for Deobfuscation:
Users that are interested in Deobfuscation are comparing it to the libraries listed below
- A library to translate native code for multiple architectures into Tiny Code Generator (TCG) based intermediate representation (IR), base…☆47Updated 4 years ago
- transpile llil to c++ for execution and testing☆42Updated last year
- obfuscation that aims to not stand out☆23Updated 3 years ago
- ☆31Updated 4 years ago
- Reversing library based off sleigh from the Ghidra project. Pcode IR access, disassembly, C++17☆13Updated 3 years ago
- VMX intrinsics plugin for Hex-Rays decompiler☆71Updated 5 years ago
- Build your emulation environment as needed☆66Updated 4 years ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆59Updated 9 months ago
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆71Updated 5 years ago
- Retypd plugin for Ghidra reverse engineering framework from NSA☆23Updated last year
- x86/x64 architecture plugin☆39Updated last year
- Symbolic expression simplifier used across VTIL toolchain. Moved into -->☆24Updated 5 years ago
- Hex-Rays microcode API plugin for breaking an obfuscating compiler☆83Updated 5 years ago
- A common set of helpers used across VTIL toolchain. Moved into -->☆20Updated 5 years ago
- IDA plugin displaying the P-Code for the current function☆66Updated last year
- Binary Ninja plugin for automating VMProtect analysis☆60Updated 2 years ago
- LLVM based devirtualization PoC’s.☆20Updated 3 years ago
- An approach to detect opaque predicates by identifying the damage caused by the obfuscation.☆30Updated 4 years ago
- Alternative API for IDA / Hex-Rays☆74Updated last year
- Decode machine code into VEX IR and translate into LLVM IR☆27Updated 5 years ago
- IDA plugin to explore and browse tags☆56Updated 5 years ago
- ☆40Updated 4 years ago
- .NET bindings for Remill☆13Updated 10 months ago
- ☆24Updated 3 years ago
- IDAPatternSearch adds a capability of finding functions according to bit-patterns into the well-known IDA Pro disassembler based on Ghidr…☆63Updated 3 years ago
- unicorn emulator for x64dbg☆33Updated 7 years ago
- PoC for a taint based attack on VMProtect☆108Updated 5 years ago
- Emulation Wrapper Solution is a IDA Pro plugin that brings emulator capacities to provide features such as debugging an mocking.☆22Updated last year
- This is the PoC of a dynamic lifter and deobfuscator with collecting trace.☆35Updated last year
- XDV is disassembler or debugger that works based on the extension plugin.☆55Updated 5 years ago