mandiant / siglib
☆21Updated 3 years ago
Related projects: ⓘ
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆57Updated 3 weeks ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆72Updated 3 years ago
- clone of armadillo patched for windows☆45Updated 5 months ago
- An IDA plugin which demangles Rust function names☆28Updated 9 months ago
- ☆28Updated 4 years ago
- Simple x64dbg plugin to save a full memory dump☆49Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆56Updated 2 months ago
- A code parser for C-Style header files that lets you to parse function's prototypes and data types used in their parameters.☆93Updated 2 years ago
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆71Updated 4 years ago
- IDA's Lumina feature, reimplemented for Binary Ninja, with new error handeling!☆35Updated 4 months ago
- Given delta compressed PE files, find download links for them on the Microsoft Symbol Server. No source PE file or VirusTotal access requ…☆26Updated 7 months ago
- api-tracer is a tiny (useless) tracer☆14Updated last year
- Set of plugins and library for dynamic pdb generation and synchronisation☆31Updated 4 months ago
- A pykd maintenance fork☆26Updated last year
- IntroVirt is an guest introspection library for KVM☆49Updated 2 weeks ago
- Lifting from native architecture to VTIL. (WIP)☆70Updated 2 years ago
- Parser for Microsoft Program Database (PDB) files☆74Updated 4 years ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆33Updated 2 years ago
- An Integrity-Check Monitoring Pintool☆56Updated 3 years ago
- A Binary Ninja plugin to detect Themida, WinLicense and Code Virtualizer's obfuscated code locations.☆62Updated last month
- Rizin FLIRT Signature Database☆35Updated last year
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 2 years ago
- Adds a window to Binary Ninja that explains in simple-ish English what an instruction does☆51Updated last year
- ☆30Updated 2 years ago
- devirtualization vmprotect☆59Updated last year
- Documenting system information classes and their uses☆48Updated 2 years ago
- Tool that automates some useful structure routines in IDA PRO☆70Updated 6 months ago
- ☆43Updated 2 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆57Updated last year