microsoft / RIFTLinks
Rust Library Recognition Project for Rust Malware by the MSTIC-MIRAGE Team
☆181Updated this week
Alternatives and similar repositories for RIFT
Users that are interested in RIFT are comparing it to the libraries listed below
Sorting:
- Slides and files for the Reversing Rust Binaries: One step beyond strings workshop at REcon 2024, presented on June 28, 2024.☆78Updated last year
- Sanctum is an experimental proof-of-concept EDR, designed to detect modern malware techniques, above and beyond the capabilities of antiv…☆234Updated 2 weeks ago
- ☆88Updated 5 months ago
- A collection of malware families and malware samples which use the Rust programming language.☆169Updated last year
- Linux anti-debugging and anti-analysis rust library☆318Updated 2 years ago
- Rust symbol recovery tool☆65Updated last week
- Resolve symbols from release rust binaries on Windows☆20Updated last year
- Modular and extensible library for Virtual Machine Introspection☆107Updated last month
- Get information about stripped rust executables☆33Updated last month
- Radamsa fuzzer ported to rust lang☆154Updated 3 months ago
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆117Updated last month
- Sample Rust crate used to implement a VBS enclave in Rust☆35Updated last month
- Web-based tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the …☆345Updated this week
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆64Updated 2 months ago
- Rust bindings to the System Informer's (formerly known as Process Hacker) "phnt" native Windows headers☆46Updated last month
- ☆147Updated 2 months ago
- Idiomatic Rust bindings for the IDA SDK, enabling the development of standalone analysis tools using IDA v9.x’s idalib☆178Updated last month
- Powershell Linter☆62Updated last week
- FLARE Team's Binary Navigator☆266Updated last month
- A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs☆335Updated 2 weeks ago
- Deobfuscation library for PoisionPlug.SHADOW's ScatterBrain obfuscator☆61Updated 3 months ago
- Rust Linux Kernel Module designed for LKM rootkit detection☆50Updated 4 months ago
- eBPF Memory Dump Tool☆78Updated 3 weeks ago
- Generate Volatility3 profiles from BTF.☆26Updated 6 months ago
- Reverse engineering assistant that uses a locally running LLM to aid with pseudo-code analysis.☆78Updated 2 weeks ago
- ☆74Updated last year
- Open Source eBPF Malware Analysis Framework