lukdog / backtolifeLinks
Memory forensic tool for process resurrection starting from a memory dump
☆20Updated 8 years ago
Alternatives and similar repositories for backtolife
Users that are interested in backtolife are comparing it to the libraries listed below
Sorting:
- Volatility plugin to extract X screenshots from a memory dump☆37Updated 7 years ago
- HackSys Extreme Vulnerable Driver - ArbitraryOverwrite Exploit☆26Updated 8 years ago
- Scripts targeting specific families☆13Updated 8 years ago
- Haskell parser for the REIL intermediate language (currently a work-in-progress)☆11Updated 7 years ago
- black hat Asia 2017 Slides☆22Updated 8 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 8 years ago
- Using SEH to bypass CFG☆29Updated 8 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- Collection of IDA Pro plugins I wrote over the years☆24Updated 15 years ago
- ☆26Updated 9 years ago
- Local enumeration and exploitation framework.☆18Updated 8 years ago
- runtime code injector for Linux☆27Updated 14 years ago
- A dirty IDAPython script to dump windows system call number/name pairs as JSON☆37Updated 8 years ago
- My manual analysis of malware families☆13Updated 8 years ago
- Archive from the article CVE-2015-5119 Flash ByteArray UaF: A beginner's walkthrough☆13Updated 10 years ago
- Linux-KVM with rVMI extensions☆22Updated 8 years ago
- POC for IAT Parsing Payloads☆48Updated 8 years ago
- Static and Dynamic exploit analysis framework.☆22Updated 11 years ago
- ☆43Updated 7 years ago
- Archive Mirror for recently republished PoC/Exploit code☆17Updated 7 years ago
- Just a proof of concept Linux rootkit that reads from syscalls.☆23Updated 7 years ago
- ☆22Updated 8 years ago
- ☆12Updated 8 years ago
- Print the strings of encoded printable characters in files☆12Updated 10 years ago
- This project has been done with Chen as part of system security course at SBU CS.☆12Updated 10 years ago
- This rearranges an ELF object file so it can be used as shellcode.☆42Updated 11 years ago
- a collection of yara rules for binary analysis☆24Updated 8 years ago
- PoC Code for CVE-2018-16712 (exploit by MmMapIoSpace)☆25Updated 6 years ago
- IDA Pomidor is a plugin for Hex-Ray's IDA Pro disassembler that will help you retain concentration and productivity during long reversing…☆35Updated 11 years ago
- ☆20Updated 7 years ago