dcdelia / dbi-detector
Collection of DBI evasion techniques
☆14Updated 2 years ago
Related projects: ⓘ
- Library to hide DBI artifacts when using Intel Pin. Code from the ASIA CCS 2019 paper "SoK: Using Dynamic Binary Instrumentation for Secu…☆21Updated 4 years ago
- Group coding repository of PltCov, a tool to instrument ELF binaries for fuzzing with ngram coverage of imported APIs☆12Updated 2 years ago
- ROPMate is the first Visual Analytics system specifically designed to assist human in composing ROP chains with the desired semantics.☆23Updated 3 years ago
- Flex 'em lexers☆38Updated 3 years ago
- ☆50Updated 5 years ago
- Ghidra Emulates Functions☆51Updated 3 years ago
- PoC for a snapshot-based coverage-guided fuzzer targeting Windows kernel components☆67Updated 3 years ago
- TaintInduce is a project which aims to automate the creation of taint propagation rules for unknown instruction sets.☆57Updated 3 years ago
- A fast, multithreaded, ROP-gadget semantics analyzer.☆49Updated 3 years ago
- Intel PT log analyzer With Parallel Processing And Basic Block Offset Caching Support☆68Updated 10 months ago
- ☆13Updated 3 years ago
- Arancino is a dynamic protection framework that defends Intel Pin against anti-instrumentation attacks.☆70Updated 2 years ago
- RopGun is a Linux implementation of a transparent ROP mitigation technique based on runtime detection of abnormal control transfers using…☆25Updated 5 years ago
- A framework for static analysis of ROP exploits and programs☆40Updated 5 years ago
- Symbolic Execution Engine based on Ghidra's PCode☆83Updated last year
- ☆37Updated 4 years ago
- GDB plugin to dump SECCOMP rules set via prctnl(PR_SET_SECCOMP, SECCOMP_MODE_FILTER)☆22Updated 8 years ago
- A fast binary coverage measurement tool based on AFL's Qemu mode☆33Updated 3 years ago
- Rust bindings for googleprojectzero/TinyInst☆15Updated 11 months ago
- run AFL with dynamorio☆35Updated 4 years ago
- Code and artifacts of the "Dissecting American Fuzzy Lop - A FuzzBench Evaluation" paper☆11Updated last year
- kAFL Fuzzer☆33Updated 3 weeks ago
- ☆20Updated 5 months ago
- A simple pluggable tool to convert an unrolled TritonAST to LLVM-IR, optimize it and get back to TritonAST.☆34Updated 4 years ago
- Security Evaluation of Dynamic Binary Instrumentation Engines☆78Updated 6 years ago
- ☆27Updated 6 years ago
- Build your emulation environment as needed☆64Updated 3 years ago
- a few Ghidra scripts for dumping PCode data☆50Updated 5 years ago