mandiant / gostringungarblerView external linksLinks
Python tool to resolve all strings in Go binaries obfuscated by garble
☆189Feb 21, 2025Updated 11 months ago
Alternatives and similar repositories for gostringungarbler
Users that are interested in gostringungarbler are comparing it to the libraries listed below
Sorting:
- Binary Ninja plugin to deobfuscate strings obfuscated with the Garble project☆44Mar 6, 2025Updated 11 months ago
- Go symbol recovery tool☆921Jan 13, 2026Updated last month
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆84Jan 26, 2026Updated 3 weeks ago
- Redress - A tool for analyzing stripped Go binaries☆1,144Updated this week
- A tool to convert windows registry export files into windows hive files that can be used to replace NTUSER.MAN☆81Jan 26, 2026Updated 3 weeks ago
- ☆31Jan 17, 2026Updated 3 weeks ago
- NailaoLoader: Hiding Execution Flow via Patching☆22Feb 27, 2025Updated 11 months ago
- Heap encryption in Nim☆20Aug 25, 2024Updated last year
- Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) Phan…☆280Sep 18, 2024Updated last year
- A nim implementation of sRDI☆20Oct 18, 2023Updated 2 years ago
- XrefGen is a professional-grade cross-reference generator that detects indirect references and complex control-flow patterns that IDA Pro…☆27Feb 1, 2026Updated 2 weeks ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆324Jul 29, 2024Updated last year
- Utilizing DLang For Offensive Operations.☆14May 29, 2025Updated 8 months ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆163Aug 23, 2024Updated last year
- Tools for analyzing EDR agents☆277Jun 10, 2024Updated last year
- FLARE Team's Binary Navigator☆307Dec 16, 2025Updated 2 months ago
- Stage 0☆169Dec 18, 2024Updated last year
- Obfuscator-llvm Control Flow Flattening Deobfuscator☆239Apr 16, 2025Updated 10 months ago
- Deobfuscation library for PoisionPlug.SHADOW's ScatterBrain obfuscator☆75Mar 14, 2025Updated 11 months ago
- Obfuscate Go builds☆5,304Dec 23, 2025Updated last month
- Shellcode Loader Utilizing ETW Events☆67Feb 26, 2025Updated 11 months ago
- Identifies LOLDrivers that are not blocked by the active HVCI policy — ideal for BYOVD scenarios.☆75Jul 25, 2025Updated 6 months ago
- Exfiltrate files using the HTTP protocol version ("HTTP/1.0" is a 0 and "HTTP/1.1" is a 1)☆24Oct 23, 2021Updated 4 years ago
- remote process injections using pool party techniques☆70Jun 29, 2025Updated 7 months ago
- Rust Library Recognition Project for Rust Malware by the MSTIC-MIRAGE Team☆345Updated this week
- Retrieve inner payloads from Donut samples☆117Dec 1, 2025Updated 2 months ago
- A powerful Python library and CLI tool for parsing, analyzing, and manipulating YARA rules through Abstract Syntax Tree (AST) representat…☆51Dec 20, 2025Updated last month
- call gates as stable comunication channel for NT x86 and Linux x86_64☆32Aug 11, 2023Updated 2 years ago
- IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformati…☆1,730Updated this week
- Ebyte-Go-Morpher is a Go program that parses, analyzes, and rewrites Go source code to apply multiple layers of obfuscation. It operates …☆122Jul 19, 2025Updated 6 months ago
- ☆86Jan 21, 2025Updated last year
- MIPS VM to execute payloads without allocating executable memory. Based on a PlayStation 1 (PSX) Emulator.☆124Dec 6, 2024Updated last year
- Evasion by machine code de-optimization.☆416Jul 22, 2024Updated last year
- Tool to find code cave in PE image (x86 / x64) - Find empty space to place code in PE files☆71Aug 1, 2023Updated 2 years ago
- Because AV evasion should be easy.☆855Nov 28, 2024Updated last year
- IAT Unhooking proof-of-concept☆34Apr 7, 2024Updated last year
- ☆124May 12, 2021Updated 4 years ago
- Stack Spoofing with Synthetic frames based on the work of namazso, SilentMoonWalk, and VulcanRaven☆254Oct 16, 2024Updated last year
- A command line Windows API tracing tool for Golang binaries.☆159Dec 4, 2023Updated 2 years ago