cube0x8 / ChromeRagamuffin
Google Chrome internals analysis using Volatility
☆42Updated 2 years ago
Alternatives and similar repositories for ChromeRagamuffin:
Users that are interested in ChromeRagamuffin are comparing it to the libraries listed below
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 6 years ago
- A Volatility plugin for finding sqlite database rows☆22Updated 5 years ago
- Plugins for the Viper Framework☆14Updated 5 years ago
- radare2 script to help on COM objects reverse engineering☆11Updated 7 years ago
- ☆47Updated 5 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- ☆43Updated 6 years ago
- API Tracker by Cysinfo Team☆22Updated 8 years ago
- Generate bulk YARA rules from YAML input☆22Updated 5 years ago
- Handy scripts to speed up malware analysis☆35Updated last year
- IDAPython scripts☆15Updated 7 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- ☆36Updated 5 years ago
- Yaras Random☆20Updated 6 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- Analysis PE file or Shellcode☆49Updated 8 years ago
- pure Python binary analysis framework☆22Updated 6 years ago
- ActiveMime File Format Documentation☆17Updated 3 years ago
- ☆13Updated 4 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆15Updated last year
- The Multiplatform Linux Sandbox☆15Updated last year
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆74Updated 10 years ago
- Windows link file (shortcuts) examiner☆67Updated 8 months ago
- A python script that can be used to scan data within in an IDB using Yara.☆22Updated 6 years ago
- Emu-strings project - JScript/VBScript automated dropper analysis system☆17Updated 3 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 6 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- Tool for analysis of Windows Prefetch files☆26Updated 6 years ago
- ☆15Updated 4 years ago