carbonblack / binee
Binee: binary emulation environment
☆517Updated 2 years ago
Alternatives and similar repositories for binee:
Users that are interested in binee are comparing it to the libraries listed below
- A sane API for IDA Pro's decompiler. Useful for malware RE and vulnerability research☆454Updated 2 years ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆249Updated 2 years ago
- Generating YARA rules based on binary code☆209Updated 3 years ago
- Automatically generate AV byte signatures from sets of similar binaries.☆271Updated 4 months ago
- Virtual Machine Introspection, Tracing & Debugging☆578Updated 3 years ago
- rVMI - A New Paradigm For Full System Analysis☆355Updated 7 years ago
- Pure Python parser and analyzer for IDA Pro database files (.idb).☆475Updated last week
- SMDA is a minimalist recursive disassembler library that is optimized for accurate Control Flow Graph (CFG) recovery from memory dumps.☆231Updated 3 weeks ago
- ☆962Updated 3 weeks ago
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆386Updated last year
- A tool to detect and crash Cuckoo Sandbox☆293Updated 9 months ago
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆693Updated 7 months ago
- Checksec, but for Windows: static detection of security mitigations in executables☆587Updated 3 months ago
- INFILTRATE 2019 Demo Materials☆339Updated 2 years ago
- C++ application that uses memory and code hooks to detect packers☆270Updated 7 years ago
- Yara rule making tool (IDA Pro & Binary Ninja & Cutter & Ghidra Plugin)☆233Updated 6 months ago
- IDA Pro plugin to assist with complex graphs☆316Updated 2 years ago
- YARA malware query accelerator (web frontend)☆427Updated last month
- Conference slides and White-papers☆357Updated 5 years ago
- ☆225Updated 2 years ago
- Drltrace is a library calls tracer for Windows and Linux applications.☆400Updated 4 years ago
- DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior☆272Updated 5 years ago
- A static analyzer for PE executables.☆1,063Updated last year
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆159Updated 5 years ago
- Labeless is a multipurpose IDA Pro plugin system for labels/comments synchronization with a debugger backend, with complex memory dumping…☆545Updated 3 months ago
- Package Binary Code as a Python class using Binary Ninja and Unicorn Engine☆404Updated 2 years ago
- Various snippets created during malware analysis☆458Updated 2 years ago
- ☆838Updated 6 months ago
- Collaborative malware analysis framework☆375Updated 6 years ago
- Quickly debug shellcode extracted during malware analysis☆603Updated last year