MODeflattener deobfuscates control flow flattened functions obfuscated by OLLVM using Miasm.
☆203Jul 23, 2021Updated 4 years ago
Alternatives and similar repositories for MODeflattener
Users that are interested in MODeflattener are comparing it to the libraries listed below
Sorting:
- Code deobfuscation framework to simplify Mixed Boolean-Arithmetic (MBA) expressions☆347Feb 2, 2026Updated last month
- Control-flow-flattening and string deobfuscator☆160Nov 8, 2021Updated 4 years ago
- Hex-Rays microcode API plugin for breaking an obfuscating compiler☆794Feb 22, 2021Updated 5 years ago
- Greybox Synthesizer geared for deobfuscation of assembly instructions.☆167Feb 16, 2025Updated last year
- Yet Another Not So Obfuscated LLVM☆389May 30, 2024Updated last year
- An IDA plugin that eases reversing of binaries that have been code-size-optimized with function outlining☆224Dec 31, 2024Updated last year
- ☆72Jul 8, 2021Updated 4 years ago
- Hex-Rays microcode API plugin for breaking an obfuscating compiler☆84Jun 29, 2019Updated 6 years ago
- An Interactive Hex-Rays Microcode Explorer☆651Feb 8, 2024Updated 2 years ago
- HexRays ctree visualization plugin☆437Sep 6, 2024Updated last year
- IDA plugin to pinpoint obfuscated code☆143Apr 29, 2022Updated 3 years ago
- Efficient Deobfuscation of Linear Mixed Boolean-Arithmetic Expressions☆183Oct 12, 2023Updated 2 years ago
- Workshop Material on VM-based Deobfuscation☆200Oct 20, 2021Updated 4 years ago
- Assets for the "Tickling VMProtect with LLVM" blog post.☆168Sep 16, 2021Updated 4 years ago
- Playing with the Tigress software protection. Break some of its protections and solve their reverse engineering challenges. Automatic deo…☆886Nov 21, 2023Updated 2 years ago
- Obfuscator-llvm Control Flow Flattening Deobfuscator☆245Apr 16, 2025Updated 10 months ago
- LLVM based devirtualization PoC’s.☆21Dec 11, 2021Updated 4 years ago
- ☆76Sep 30, 2021Updated 4 years ago
- IDA strike-out: A Hex-Rays decompiler plugin to patch the Ctree☆126Nov 27, 2025Updated 3 months ago
- Binary Ninja plugin to identify obfuscated code and other interesting code constructs☆651Mar 14, 2025Updated 11 months ago
- A VMP to VTIL lifter.☆445May 20, 2021Updated 4 years ago
- Manipulation, canonicalization and identification of mixed boolean-arithmetic symbolic expressions☆322Jan 4, 2024Updated 2 years ago
- ☆929Aug 14, 2025Updated 6 months ago
- BinRec: Dynamic Binary Lifting and Recompilation☆149Sep 18, 2023Updated 2 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆657Jan 28, 2025Updated last year
- Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA☆212Nov 21, 2023Updated 2 years ago
- gooMBA is a Hex-Rays Decompiler plugin to simplify Mixed Boolean-Arithmetic (MBA) expressions☆670Nov 10, 2025Updated 3 months ago
- LLVM based static binary analysis framework☆303Apr 2, 2025Updated 11 months ago
- ☆424Jan 1, 2025Updated last year
- An OLLVM-CFF Deobfuscation Plugin☆627Dec 5, 2023Updated 2 years ago
- Display Hex-Rays Microcode☆245Nov 13, 2022Updated 3 years ago
- A Trace Explorer for Reverse Engineers☆1,525Oct 23, 2023Updated 2 years ago
- Tiny cute emulator plugin for IDA based on unicorn.☆1,228Aug 13, 2024Updated last year
- use angr to deobfuscation☆715Sep 18, 2024Updated last year
- Deobfuscate OLLVM Bogus Control Flow via angr☆68Nov 26, 2021Updated 4 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆68Aug 11, 2023Updated 2 years ago
- This repo contains the tests and results that were done during the research of SATURN☆44Dec 10, 2020Updated 5 years ago
- ☆25May 27, 2025Updated 9 months ago
- An integration for IDA and VS Code which connects both to easily execute and debug IDAPython scripts.☆962Sep 16, 2025Updated 5 months ago