cr3mov / cr3ctf-2024
cr3 CTF 2024
☆14Updated 9 months ago
Alternatives and similar repositories for cr3ctf-2024:
Users that are interested in cr3ctf-2024 are comparing it to the libraries listed below
- Me fockin' pe protector☆45Updated 2 years ago
- Rust library for lifting raw binary data to LLVM IR☆44Updated last week
- Mixed Boolean-Arithmetic in Rust for WebAssembly☆28Updated last year
- devirtualization vmprotect☆62Updated last year
- SMM driver/rootkit for platform memory access with R3 <-> R0 <-> R-2 communication.☆81Updated 4 months ago
- A Binary Ninja plugin to detect Themida, WinLicense and Code Virtualizer's obfuscated code locations.☆74Updated 7 months ago
- Symbolic Execution based on lifting amd64 to z3☆26Updated 8 months ago
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆56Updated last year
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆76Updated 2 years ago
- A large collection of 32bit and 64bit PE files useful for verifying the correctness of bin2bin transformations☆50Updated 7 months ago
- Symbol Recovery Tool for Nuitka Binaries☆51Updated 2 months ago
- How Meltdown and Spectre haunt Anti-Cheat: DVRT details☆21Updated 6 months ago
- A C compiler targeting an artistically pleasing nightmare for reverse engineers☆95Updated 2 months ago
- My research WIP bluepill hypervisor☆41Updated last year
- Disassembler for Zeus VM custom instruction set☆27Updated last year
- Analyzing the driver and internal module of EasyAntiCheat.☆38Updated last year
- x86-64 user mode emulation using Zydis☆44Updated last month
- Mixed Boolean-Arithmetic☆54Updated last year
- Control Flow Linearization☆23Updated last year
- Zydis JavaScript bindings via WASM☆18Updated last year
- ☆37Updated 3 years ago
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆71Updated 5 years ago
- Load dll with undocumented functions and debug symbols☆46Updated 7 months ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆58Updated 7 months ago
- Lightweight PDB symbol parser and resolver☆24Updated 4 months ago
- Retrieves VAC module ice encryption key by reversing the LCG seed that it was generated with☆14Updated last year
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆71Updated last year
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆33Updated 3 years ago
- Type 2 Hypervisor for security research supported by AMD-V hardware assisted virtualization☆38Updated 2 years ago