carbonblack / binee
Binee: binary emulation environment
☆513Updated last year
Alternatives and similar repositories for binee:
Users that are interested in binee are comparing it to the libraries listed below
- Automatically generate AV byte signatures from sets of similar binaries.☆263Updated 2 months ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆247Updated last year
- Generating YARA rules based on binary code☆205Updated 3 years ago
- Virtual Machine Introspection, Tracing & Debugging☆571Updated 2 years ago
- A sane API for IDA Pro's decompiler. Useful for malware RE and vulnerability research☆453Updated last year
- ☆223Updated last year
- ☆956Updated 2 weeks ago
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆679Updated 4 months ago
- SMDA is a minimalist recursive disassembler library that is optimized for accurate Control Flow Graph (CFG) recovery from memory dumps.☆229Updated last week
- Drltrace is a library calls tracer for Windows and Linux applications.☆397Updated 4 years ago
- A tool to detect and crash Cuckoo Sandbox☆289Updated 6 months ago
- A static analyzer for PE executables.☆1,043Updated last year
- DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior☆271Updated 5 years ago
- Quickly debug shellcode extracted during malware analysis☆582Updated last year
- Portable Executable parsing library (from PE-bear)☆652Updated 5 months ago
- IDA Pro plugin to assist with complex graphs☆314Updated last year
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆426Updated 6 years ago
- Karta - source code assisted fast binary matching plugin for IDA☆869Updated last year
- rVMI - A New Paradigm For Full System Analysis☆354Updated 7 years ago
- Checksec, but for Windows: static detection of security mitigations in executables☆576Updated last month
- idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro☆384Updated last year
- A Miasm2 based function divination.☆534Updated 4 years ago
- C++ application that uses memory and code hooks to detect packers☆270Updated 6 years ago
- Integrate Ghidra's decompiler as an Ida plugin☆426Updated 8 months ago
- Daenerys: A framework for interoperability between IDA and Ghidra☆300Updated 5 years ago
- YARA malware query accelerator (web frontend)☆421Updated this week
- zer0m0n driver for cuckoo sandbox☆358Updated 9 years ago
- INFILTRATE 2019 Demo Materials☆341Updated last year
- Pure Python parser and analyzer for IDA Pro database files (.idb).☆464Updated 3 years ago
- Various snippets created during malware analysis☆458Updated 2 years ago