mandiant / siglib
☆23Updated 3 years ago
Alternatives and similar repositories for siglib:
Users that are interested in siglib are comparing it to the libraries listed below
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆58Updated 5 months ago
- ☆28Updated 4 years ago
- Analyses in IDA/Hex-Rays☆79Updated last year
- clone of armadillo patched for windows☆48Updated 3 months ago
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆32Updated 11 months ago
- ☆31Updated 2 years ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆58Updated 6 months ago
- VMX intrinsics plugin for Hex-Rays decompiler☆70Updated 5 years ago
- Set of plugins and library for dynamic pdb generation and synchronisation☆35Updated 8 months ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆79Updated 4 years ago
- A pykd maintenance fork☆36Updated this week
- Small programs and scripts that do not require their own repositories☆132Updated 2 years ago
- IDAPatternSearch adds a capability of finding functions according to bit-patterns into the well-known IDA Pro disassembler based on Ghidr…☆63Updated 3 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆62Updated last year
- Python bindings for the VTIL API. (WIP)☆29Updated 4 years ago
- IDA-names automatically renames pseudocode windows with the current function name.☆51Updated 2 years ago
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆75Updated 6 months ago
- Lightweight PDB symbol parser and resolver☆24Updated 3 months ago
- An Integrity-Check Monitoring Pintool☆56Updated 4 years ago
- Rizin FLIRT Signature Database☆38Updated last year
- Python bindings for the Icicle emulator.☆25Updated 2 weeks ago
- IDA plugin to explore and browse tags☆53Updated 5 years ago
- Parser for Microsoft Program Database (PDB) files☆74Updated 4 years ago
- Binary Ninja plugin for automating VMProtect analysis☆58Updated 2 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆50Updated 4 years ago
- idenLib (Library Function Identification) plugin for x32dbg☆41Updated 5 years ago
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- Python bindings for the Microsoft Hypervisor Platform APIs.☆80Updated 5 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Updated 4 years ago
- A code parser for C-Style header files that lets you to parse function's prototypes and data types used in their parameters.☆93Updated 2 years ago