fox-it / dissect.cstruct_legacyLinks
A no-nonsense c-like structure parsing library for Python
☆240Updated 3 years ago
Alternatives and similar repositories for dissect.cstruct_legacy
Users that are interested in dissect.cstruct_legacy are comparing it to the libraries listed below
Sorting:
- grap: define and match graph patterns within binaries☆171Updated 4 years ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆158Updated 5 years ago
- A novel technique to hide code from debuggers & disassemblers☆156Updated 11 months ago
- Package Binary Code as a Python class using Binary Ninja and Unicorn Engine☆406Updated 3 years ago
- LibVMI-based debug server, implemented in Python. Building a guest aware, stealth and agentless full-system debugger☆219Updated 4 years ago
- grap: define and match graph patterns within binaries☆154Updated 3 years ago
- IDAtropy is a plugin for Hex-Ray's IDA Pro designed to generate charts of entropy and histograms using the power of idapython and matplot…☆142Updated 4 years ago
- A port of Kaitai to the Hiew hex editor☆150Updated 5 years ago
- radare2 + miasm2 = ♥☆103Updated 5 years ago
- ☆99Updated last year
- Small tool for generating ropchains using unicorn and z3☆198Updated 7 years ago
- An event driven multi-core process debugging, tracing, and manipulation framework.☆175Updated 5 years ago
- ☆108Updated 6 years ago
- Reverse engineering tool for automatic structure recovering and memory use analysis based on DynamoRIO and Capstone☆321Updated 5 years ago
- Binary file entropy visualizer written in Python☆54Updated 5 months ago
- Automatically generate AV byte signatures from sets of similar binaries.☆277Updated 7 months ago
- Pure Python parser and analyzer for IDA Pro database files (.idb).☆478Updated 3 months ago
- a friendly wrapper around ptrace☆132Updated 3 years ago
- Hypervisor-Level Debugger based on Radare2 / LibVMI, using VMI IO and debug plugins☆135Updated 6 years ago
- add symbols back into a stripped ELF binary (~strip)☆174Updated 7 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆239Updated 8 years ago
- map file generator for intel x86 binary based on flirt signature☆83Updated 9 years ago
- Runtime Process Manipulation☆236Updated 8 months ago
- Radare Congress Stuff☆212Updated 8 months ago
- pfp - Python Format Parser - a python-based 010 Editor template interpreter☆197Updated 2 years ago
- Daenerys: A framework for interoperability between IDA and Ghidra☆302Updated 6 years ago
- IDA plugins and scripts for analyzing register usage frame☆181Updated 2 years ago
- Creating function call graphs based on radare2 framwork, plot fancy graphs and extract behavior indicators☆86Updated 8 years ago
- Example code from "Programming Linux Anti-Reversing Techniques"☆99Updated 8 years ago
- A program to draw rectangles from heap traces.☆135Updated 5 years ago