elastic / die-rustLinks
Native Rust bindings for @horsicq's Detect-It-Easy
☆19Updated 2 months ago
Alternatives and similar repositories for die-rust
Users that are interested in die-rust are comparing it to the libraries listed below
Sorting:
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆41Updated 2 years ago
- This master thesis project continuously collects and analyses Microsoft Windows kernel drivers using static and dynamic methods to help s…☆21Updated last year
- IDA plugin to recover source code from panic information on rust☆17Updated 8 months ago
- Playing with LLVM passes☆40Updated 2 years ago
- Static analysis tool based on clang, which detects source-to-binary information leaks in C and C++ projects☆86Updated 3 years ago
- A KISS Rust crate to parse Windows kernel crash-dumps created by Windows & its debugger.☆42Updated last month
- PDB Rewriting Rust Library☆26Updated last year
- Rust library for lifting raw binary data to LLVM IR☆63Updated 6 months ago
- Generate a PDB file given the old PDB file and an address mapping☆51Updated 6 months ago
- A Rust crate for parsing Windows user minidumps.☆41Updated last year
- LLDB based debugger for Linux Kernel☆28Updated 10 months ago
- A Binary Ninja plugin to detect Themida, WinLicense and Code Virtualizer's obfuscated code locations.☆90Updated last year
- Cargo subcommand to build a crate into shellcode☆26Updated last year
- ☆31Updated 3 weeks ago
- LLVM based obfuscation engine☆109Updated 7 months ago
- Windows Minidump loader for Ghidra☆29Updated 3 years ago
- Disassembler for Zeus VM custom instruction set☆30Updated last year
- binary instrumentation, analysis, and patching framework☆100Updated last week
- A driver to implement IOCTL hooking☆27Updated 3 years ago
- Plugin interface for remote communications with Binary Ninja database and MCP server for interfacing with LLMs.☆54Updated 8 months ago
- IFL - Interactive Functions List (plugin for Binary Ninja)☆25Updated last year
- IDB parser☆22Updated 2 months ago
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆48Updated 3 years ago
- Rust bindings to the System Informer's (formerly known as Process Hacker) "phnt" native Windows headers☆50Updated 8 months ago
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆127Updated last week
- Hex-Rays CLI (HCLI)☆44Updated last week
- A fast execution trace symbolizer for Windows that runs on all major platforms and doesn't depend on any Microsoft libraries.☆100Updated last month
- This repository contains an IDA processor for loading and disassembling compiled yara rules.☆44Updated last year
- A code parser for C-Style header files that lets you to parse function's prototypes and data types used in their parameters.☆94Updated 3 years ago
- Report and exploit of CVE-2023-36427☆90Updated 2 years ago