mandiant / rvmi
rVMI - A New Paradigm For Full System Analysis
☆355Updated 7 years ago
Alternatives and similar repositories for rvmi:
Users that are interested in rvmi are comparing it to the libraries listed below
- Conference slides and White-papers☆357Updated 5 years ago
- Cosa Nostra, a FOSS graph based malware clusterization toolkit.☆230Updated last year
- C++ application that uses memory and code hooks to detect packers☆270Updated 7 years ago
- inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extr…☆285Updated last year
- Collaborative malware analysis framework☆375Updated 6 years ago
- hackers-grep is a utility to search for strings in PE executables including imports, exports, and debug symbols☆170Updated 6 years ago
- Various snippets created during malware analysis☆458Updated 2 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆194Updated 7 years ago
- ROPMEMU is a framework to analyze, dissect and decompile complex code-reuse attacks.☆286Updated 8 years ago
- Xori is an automation-ready disassembly and static analysis library for PE32, 32+ and shellcode☆728Updated 2 years ago
- A tool to detect and crash Cuckoo Sandbox☆293Updated 9 months ago
- Small tool for generating ropchains using unicorn and z3☆198Updated 7 years ago
- BASS - BASS Automated Signature Synthesizer☆175Updated 6 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆238Updated 8 years ago
- capstone based disassembler for extracting to binnavi☆228Updated 8 years ago
- Creating function call graphs based on radare2 framwork, plot fancy graphs and extract behavior indicators☆86Updated 7 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆264Updated 3 years ago
- PyAna - Analyzing the Windows shellcode☆247Updated 9 years ago
- Decept Network Protocol Proxy☆276Updated 2 years ago
- Linux bind shell with anti-reverse engineering techniques☆287Updated 8 years ago
- Protocol Analysis/Decoder Framework☆492Updated 2 years ago
- Binee: binary emulation environment☆517Updated 2 years ago
- HORSEPILL rootkit PoC☆226Updated 8 years ago
- Release Branches for MoFlow☆305Updated 9 years ago
- Modified edition of cuckoo☆399Updated 7 years ago
- A tool dedicated to the research of vulnerabilities in hypervisors by creating unusual system configurations.☆185Updated 2 years ago
- Linux ELF x32/x64 ASLR DEP/NX bypass exploit with stack-spraying☆301Updated 2 years ago
- Radare Congress Stuff☆207Updated 5 months ago
- Codex Gigas malware DNA profiling search engine discovers malware patterns and characteristics assisting individuals who are attracted in…☆155Updated 5 years ago
- Malware Analysis Tool using Function Level Fuzzy Hashing☆190Updated 9 years ago