mrphrazer / r2con2021_deobfuscationLinks
Workshop Material on VM-based Deobfuscation
☆195Updated 4 years ago
Alternatives and similar repositories for r2con2021_deobfuscation
Users that are interested in r2con2021_deobfuscation are comparing it to the libraries listed below
Sorting:
- Control-flow-flattening and string deobfuscator☆157Updated 4 years ago
- MODeflattener deobfuscates control flow flattened functions obfuscated by OLLVM using Miasm.☆197Updated 4 years ago
- Efficient Deobfuscation of Linear Mixed Boolean-Arithmetic Expressions☆177Updated 2 years ago
- IDA plugin to pinpoint obfuscated code☆143Updated 3 years ago
- ☆212Updated 2 years ago
- A dark Nord theme port for Hex Rays IDA☆102Updated 3 years ago
- Assets for the "Tickling VMProtect with LLVM" blog post.☆162Updated 4 years ago
- IDAPatternSearch adds a capability of finding functions according to bit-patterns into the well-known IDA Pro disassembler based on Ghidr…☆65Updated 4 years ago
- Hex-Rays Block Highlighter plugin for IDA to highlight if/for/do/switch/while blocks☆62Updated 3 years ago
- ☆109Updated 4 years ago
- Greybox Synthesizer geared for deobfuscation of assembly instructions.☆161Updated 9 months ago
- Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA☆146Updated 2 years ago
- Hardening code obfuscation against automated attacks☆148Updated last year
- Small programs and scripts that do not require their own repositories☆139Updated 3 years ago
- Code deobfuscation framework to simplify Mixed Boolean-Arithmetic (MBA) expressions☆335Updated 7 months ago
- Tool that automates some useful structure routines in IDA PRO☆83Updated last year
- IDA Pro plugin that displays all comments in a database☆72Updated 3 weeks ago
- LLVM based static binary analysis framework☆283Updated 8 months ago
- Port of MBA Solver SiMBA to C/C++ (MBA deobfuscation in real world applications)☆99Updated last month
- ☆93Updated 5 years ago
- Easy-to-use IDA plugin for code emulation☆45Updated last week
- Bindings for Microsoft WinDBG TTD☆233Updated 2 years ago
- A recursive disassembler written in Python. Most suitable for VMs in CTFs.☆21Updated 5 years ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆64Updated last year
- IDA Plugin that fills in missing indirect CALL & JMP target information☆140Updated 11 months ago
- IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes☆164Updated 3 months ago
- How to setup Pycharm to run scripts in IDA using the Run menu (or a keybind)☆42Updated last year
- Non-linear Mixed Boolean-Arithmetic Expressions☆69Updated last year
- Symbol Recovery Tool for Nuitka Binaries☆75Updated 11 months ago
- Find crypto constants IDA 7.x plugin☆120Updated 2 years ago