mandiant / gostringungarbler
Python tool to resolve all strings in Go binaries obfuscated by garble
☆74Updated 2 months ago
Alternatives and similar repositories for gostringungarbler:
Users that are interested in gostringungarbler are comparing it to the libraries listed below
- A command line Windows API tracing tool for Golang binaries.☆155Updated last year
- A collection of modules and scripts to help with analyzing Nim binaries☆72Updated 6 months ago
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆116Updated 9 months ago
- ☆52Updated 6 months ago
- Deobfuscation library for PoisionPlug.SHADOW's ScatterBrain obfuscator☆53Updated last month
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆114Updated 2 years ago
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆41Updated last week
- Small tool to convert beteween the PE alignments (raw and virtual).☆87Updated 2 years ago
- Retrieve inner payloads from Donut samples☆95Updated last year
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆70Updated last year
- ETW based POC to identify direct and indirect syscalls☆186Updated 2 years ago
- ☆71Updated 2 years ago
- Compile shellcode into an exe file from Windows or Linux.☆67Updated 4 years ago
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆71Updated last week
- Golang bindings for PE-sieve☆43Updated last year
- Yapscan is a YAra based Process SCANner, aimed at giving more control about what to scan and giving detailed reports on matches.☆61Updated last year
- ☆89Updated 2 months ago
- Recon 2023 slides and code☆79Updated last year
- Evasion Escaper is a project aimed at evading the checks that malicious software performs to detect if it's running in a virtual environm…☆106Updated 2 months ago
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆109Updated 7 months ago
- ☆73Updated 9 months ago
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆33Updated last year
- A dynamic unpacking tool☆134Updated last year
- Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2☆40Updated last year
- Walks the CFG bitmap to find previously executable but currently hidden shellcode regions☆115Updated last year
- ☆156Updated 11 months ago
- Powershell Linter☆50Updated 3 weeks ago
- Implementation of Advanced Module Stomping and Heap/Stack Encryption☆217Updated last year
- Tools for analyzing EDR agents☆228Updated 10 months ago
- ☆83Updated 10 months ago