ek0 / hxemuLinks
Triton based symbolic emulator
☆16Updated 3 years ago
Alternatives and similar repositories for hxemu
Users that are interested in hxemu are comparing it to the libraries listed below
Sorting:
- Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)☆61Updated 2 years ago
- a code virtualizer based on angr☆32Updated 2 years ago
- ☆25Updated 5 months ago
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆47Updated 4 years ago
- Bootkits☆18Updated 2 years ago
- ☆15Updated 2 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated 2 years ago
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆46Updated 3 years ago
- ☆21Updated 8 years ago
- Binary Ninja plugin for automating VMProtect analysis☆63Updated 2 years ago
- Instrumenting a binary without source code to bypass anti-debug checks☆36Updated 4 years ago
- Wow64 Heaven's Gate Hook☆29Updated 4 years ago
- virtualization obfuscator inspired by juhajong/vm-obfuscator☆57Updated 5 years ago
- Disassembler for Zeus VM custom instruction set☆30Updated last year
- Reverse engineered API for Microsoft's Time Travel Debugger☆35Updated last year
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆75Updated 6 years ago
- Windows Minidump loader for Ghidra☆29Updated 3 years ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆64Updated last year
- genpatch is IDA plugin that generates a python script for patching binary☆37Updated last year
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆24Updated 2 years ago
- Dynamic Taint Analysis versus Obfuscated Self-Checking☆16Updated 4 years ago
- Playing with LLVM passes☆37Updated 2 years ago
- ☆36Updated 3 years ago
- This is the PoC of a dynamic lifter and deobfuscator with collecting trace.☆36Updated 2 years ago
- Simple DLL and client app that work together to hook all the functions in WinHvPlatform.dll in order to provide logging and introspection…☆18Updated 3 years ago
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆18Updated 4 months ago
- IDA Pro plugin to enhance the 'g' keyboard shortcut☆46Updated 2 years ago
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆35Updated last year
- ☆24Updated 4 years ago
- ☆31Updated 3 years ago