carbonblack / binee
Binee: binary emulation environment
☆514Updated 2 years ago
Alternatives and similar repositories for binee:
Users that are interested in binee are comparing it to the libraries listed below
- Generating YARA rules based on binary code☆207Updated 3 years ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆248Updated 2 years ago
- A sane API for IDA Pro's decompiler. Useful for malware RE and vulnerability research☆452Updated last year
- DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior☆272Updated 5 years ago
- ☆226Updated last year
- SMDA is a minimalist recursive disassembler library that is optimized for accurate Control Flow Graph (CFG) recovery from memory dumps.☆231Updated 2 weeks ago
- Automatically generate AV byte signatures from sets of similar binaries.☆267Updated 3 months ago
- rVMI - A New Paradigm For Full System Analysis☆355Updated 7 years ago
- YARA malware query accelerator (web frontend)☆422Updated last week
- A tool to detect and crash Cuckoo Sandbox☆292Updated 8 months ago
- Virtual Machine Introspection, Tracing & Debugging☆578Updated 3 years ago
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆686Updated 6 months ago
- Checksec, but for Windows: static detection of security mitigations in executables☆581Updated 2 months ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆158Updated 5 years ago
- ☆961Updated last month
- Karta - source code assisted fast binary matching plugin for IDA☆871Updated last year
- Quickly debug shellcode extracted during malware analysis☆595Updated last year
- Labeless is a multipurpose IDA Pro plugin system for labels/comments synchronization with a debugger backend, with complex memory dumping…☆543Updated 2 months ago
- ☆826Updated 5 months ago
- A static analyzer for PE executables.☆1,048Updated last year
- Yara rule making tool (IDA Pro & Binary Ninja & Cutter & Ghidra Plugin)☆231Updated 5 months ago
- Pure Python parser and analyzer for IDA Pro database files (.idb).☆472Updated 3 years ago
- PeaceMaker Threat Detection is a Windows kernel-based application that detects advanced techniques used by malware.☆420Updated 4 years ago
- C++ application that uses memory and code hooks to detect packers☆270Updated 7 years ago
- A Binary Genetic Traits Lexer Framework☆486Updated last month
- Various snippets created during malware analysis☆458Updated 2 years ago
- Portable Executable parsing library (from PE-bear)☆657Updated 7 months ago
- IDA Pro plugin to assist with complex graphs☆315Updated last year
- INFILTRATE 2019 Demo Materials☆340Updated 2 years ago
- DRAKVUF Black-box Binary Analysis☆1,104Updated this week