fox-it / dissect.cstruct_legacyLinks
A no-nonsense c-like structure parsing library for Python
☆240Updated 3 years ago
Alternatives and similar repositories for dissect.cstruct_legacy
Users that are interested in dissect.cstruct_legacy are comparing it to the libraries listed below
Sorting:
- grap: define and match graph patterns within binaries☆173Updated 4 years ago
- A novel technique to hide code from debuggers & disassemblers☆159Updated last year
- grap: define and match graph patterns within binaries☆156Updated 3 years ago
- IDAtropy is a plugin for Hex-Ray's IDA Pro designed to generate charts of entropy and histograms using the power of idapython and matplot…☆142Updated 4 years ago
- LibVMI-based debug server, implemented in Python. Building a guest aware, stealth and agentless full-system debugger☆220Updated 5 years ago
- Package Binary Code as a Python class using Binary Ninja and Unicorn Engine☆408Updated 3 years ago
- Runtime Process Manipulation☆238Updated last year
- A port of Kaitai to the Hiew hex editor☆149Updated 5 years ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆160Updated 5 years ago
- An event driven multi-core process debugging, tracing, and manipulation framework.☆175Updated 6 years ago
- Small tool for generating ropchains using unicorn and z3☆198Updated 7 years ago
- radare2 + miasm2 = ♥☆103Updated 5 years ago
- ☆112Updated 6 years ago
- Reverse engineering tool for automatic structure recovering and memory use analysis based on DynamoRIO and Capstone☆325Updated 6 years ago
- Pure Python parser and analyzer for IDA Pro database files (.idb).☆484Updated 7 months ago
- ☆99Updated last year
- Automatically generate AV byte signatures from sets of similar binaries.☆285Updated last year
- Hypervisor-Level Debugger based on Radare2 / LibVMI, using VMI IO and debug plugins☆134Updated 6 years ago
- pfp - Python Format Parser - a python-based 010 Editor template interpreter☆199Updated 2 years ago
- map file generator for intel x86 binary based on flirt signature☆83Updated 9 years ago
- add symbols back into a stripped ELF binary (~strip)☆177Updated 8 years ago
- Creating function call graphs based on radare2 framwork, plot fancy graphs and extract behavior indicators☆86Updated 8 years ago
- A Miasm2 based function divination.☆543Updated 5 years ago
- Example code from "Programming Linux Anti-Reversing Techniques"☆98Updated 8 years ago
- YaCo is an Hex-Rays IDA plugin. When enabled, multiple users can work simultaneously on the same binary. Any modification done by any use…☆326Updated 6 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆240Updated last month
- Binary file entropy visualizer written in Python☆54Updated 10 months ago
- Cross Architecture Shellcode in C☆207Updated 9 years ago
- a friendly wrapper around ptrace☆134Updated 3 years ago
- Library to read and edit files in the following formats: Executable and Linking Format (ELF), Portable Executable (PE), MachO and OAT (An…☆134Updated last year