jdu2600 / CFG-FindHiddenShellcode
Walks the CFG bitmap to find previously executable but currently hidden shellcode regions
☆115Updated last year
Alternatives and similar repositories for CFG-FindHiddenShellcode:
Users that are interested in CFG-FindHiddenShellcode are comparing it to the libraries listed below
- Uses Threat-Intelligence ETW events to identify shellcode regions being hidden by fluctuating memory protections☆127Updated last year
- Finding Truth in the Shadows☆89Updated 2 years ago
- A tool for detecting manual/direct syscalls in x86 and x64 processes using Nirvana Hooks.☆110Updated 3 years ago
- Files for http://blog.deniable.org/posts/windows-callbacks/