iij / idapython-cheatsheet
☆23Updated last year
Alternatives and similar repositories for idapython-cheatsheet:
Users that are interested in idapython-cheatsheet are comparing it to the libraries listed below
- LLVM-based ROP obfuscated compiler☆13Updated 2 years ago
- Make the Windows API in Ghidra easy to read and informative.☆27Updated 3 years ago
- Modified python version of Rolf Rolles' https://github.com/RolfRolles/HexRaysDeob to unflatten Emotet'S Control Flow Flattening☆26Updated 2 years ago
- Automatically identify and extract potential anti-debugging techniques used by malware.☆15Updated 2 months ago
- Ghidra Script for automated analysis of EMOTET☆17Updated 3 years ago
- UnpacMe IDA Byte Search☆27Updated last year
- WIP Emotet Control Flow Unflattening using miasm and radare2☆23Updated 2 years ago
- IDA Pro plugin for recognizing known hashes of API function names☆82Updated 2 years ago
- cross-architecture static library detector for IoT malware☆34Updated last year
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆32Updated 11 months ago
- ☆71Updated 6 months ago
- ☆72Updated 3 years ago
- A IDA plugin to enable linking to locations in an IDB with a disas:// URI☆32Updated last year
- ☆31Updated 2 years ago
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆29Updated 2 years ago
- IDA Python deobfuscation script for ConfuserEx binaries☆35Updated 2 years ago
- ☆25Updated 3 months ago
- Security Camp 2021 & GCC 2022☆113Updated 2 years ago
- Các IDA Flirt signatures HTC tạo☆17Updated 3 months ago
- ☆28Updated 4 years ago
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆45Updated 2 years ago
- ☆45Updated 2 years ago
- This repository contains an IDA processor for loading and disassembling compiled yara rules.☆33Updated 3 weeks ago
- An IDA plugin which demangles Rust function names☆31Updated last year
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆67Updated 9 months ago
- Hex-Rays Block Highlighter plugin for IDA to highlight if/for/do/switch/while blocks☆60Updated 2 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆59Updated 2 years ago
- A modular Karton Framework service that unpacks common packers like UPX and others using the Qiling Framework.☆52Updated 3 years ago
- IDA plugin to deobfuscate emotet CFF☆17Updated 2 years ago
- A script to detect stack-strings by using emulation (leveraging Unicorn)☆35Updated last year