liyansong2018 / elfspirit
ELF static analysis and injection framework that parse, manipulate, patch and camouflage ELF files.
☆51Updated this week
Related projects ⓘ
Alternatives and complementary repositories for elfspirit
- An IDA processor for eBPF bytecode☆62Updated 2 weeks ago
- An IDA processor for eBPF bytecode☆45Updated 3 years ago
- 关于intel和amd指令行为不一样这件事☆57Updated 2 years ago
- Static Binary Instrumentation☆118Updated 3 years ago
- ☆56Updated 2 years ago
- PoC for obfuscating the dynamic symbol table injecting a custom Hash Table to do symbol resolution☆25Updated 4 years ago
- Recover 64 bit ELF executables from memory dump☆83Updated 6 years ago
- Symbolic Execution Engine based on Ghidra's PCode☆82Updated last year
- nanoMIPS IDA plugin☆65Updated 3 years ago
- Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)☆36Updated last year
- FingerMatch is IDA plugin for collecting functions, data, types and comments from analysed binaries and fuzzy matching them in another bi…☆78Updated 3 years ago
- IDAPatternSearch adds a capability of finding functions according to bit-patterns into the well-known IDA Pro disassembler based on Ghidr…☆62Updated 3 years ago
- IDA plugin displaying the P-Code for the current function☆64Updated last year
- IDA SIG files for multiarch uClibc library☆37Updated 6 years ago
- a plugin for ida of version 7.2 to help know F5 window codes better☆54Updated 5 years ago
- Raw IDA Kernel API for IDAPython☆33Updated 2 years ago
- Library for Capstone instruction to LLVM IR translation☆42Updated 6 years ago
- IDA Python3 Plugin to make your RE life easier. Trace execution and save code/memory for detailed exploration.☆32Updated 8 months ago
- ☆46Updated 4 months ago
- ☆80Updated 2 years ago
- A Ghidra headless analyzer tailored for Qt binary analysis☆49Updated last month
- Toy LLVM obfuscator pass☆70Updated 3 years ago
- Alternative API for IDA / Hex-Rays☆72Updated last year
- a code virtualizer based on angr☆27Updated last year
- vmp2.x devirtualization☆62Updated 2 weeks ago
- FTL Rust Demangler is a command-line tool for demangling symbol names that are mangled with the Rust convention. It takes a mangled symbo…☆31Updated last year
- D-810 is an IDA Pro plugin which can be used to deobfuscate code at decompilation time by modifying IDA Pro microcode.☆42Updated 3 years ago
- Binary Ninja plugin to clean up some common obfuscation techniques.☆19Updated 4 years ago
- A Go library speaking Hex-Rays IDA lumina protocol☆34Updated last year