carbonblack / binee
Binee: binary emulation environment
☆513Updated 2 years ago
Alternatives and similar repositories for binee:
Users that are interested in binee are comparing it to the libraries listed below
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆247Updated last year
- A sane API for IDA Pro's decompiler. Useful for malware RE and vulnerability research☆453Updated last year
- DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior☆272Updated 5 years ago
- Generating YARA rules based on binary code☆205Updated 3 years ago
- rVMI - A New Paradigm For Full System Analysis☆354Updated 7 years ago
- ☆224Updated last year
- A tool to detect and crash Cuckoo Sandbox☆292Updated 7 months ago
- Checksec, but for Windows: static detection of security mitigations in executables☆579Updated 2 months ago
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆384Updated last year
- Automatically generate AV byte signatures from sets of similar binaries.☆264Updated 3 months ago
- Live hunting of code injection techniques☆379Updated 5 years ago
- SMDA is a minimalist recursive disassembler library that is optimized for accurate Control Flow Graph (CFG) recovery from memory dumps.☆230Updated 2 weeks ago
- C++ application that uses memory and code hooks to detect packers☆270Updated 7 years ago
- Quickly debug shellcode extracted during malware analysis☆590Updated last year
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆681Updated 5 months ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆157Updated 5 years ago
- Labeless is a multipurpose IDA Pro plugin system for labels/comments synchronization with a debugger backend, with complex memory dumping…☆543Updated last month
- Pure Python parser and analyzer for IDA Pro database files (.idb).☆464Updated 3 years ago
- Various snippets created during malware analysis☆458Updated 2 years ago
- Collaborative malware analysis framework☆375Updated 6 years ago
- Drltrace is a library calls tracer for Windows and Linux applications.☆396Updated 4 years ago
- A static analyzer for PE executables.☆1,050Updated last year
- Incident Response & Digital Forensics Debugging Extension☆375Updated 6 years ago
- Yara rule making tool (IDA Pro & Binary Ninja & Cutter & Ghidra Plugin)☆229Updated 4 months ago
- ☆823Updated 4 months ago
- IDA Pro plugin to assist with complex graphs☆314Updated last year
- YARA malware query accelerator (web frontend)☆421Updated last week
- Tools for instrumenting Windows Defender's mpengine.dll☆293Updated 6 years ago
- INFILTRATE 2019 Demo Materials☆341Updated last year
- YaCo is an Hex-Rays IDA plugin. When enabled, multiple users can work simultaneously on the same binary. Any modification done by any use…☆317Updated 5 years ago