mrphrazer / r2con2021_deobfuscationLinks
Workshop Material on VM-based Deobfuscation
☆193Updated 3 years ago
Alternatives and similar repositories for r2con2021_deobfuscation
Users that are interested in r2con2021_deobfuscation are comparing it to the libraries listed below
Sorting:
- Control-flow-flattening and string deobfuscator☆155Updated 3 years ago
- Efficient Deobfuscation of Linear Mixed Boolean-Arithmetic Expressions☆169Updated last year
- MODeflattener deobfuscates control flow flattened functions obfuscated by OLLVM using Miasm.☆193Updated 4 years ago
- IDA plugin to pinpoint obfuscated code☆141Updated 3 years ago
- Hex-Rays Block Highlighter plugin for IDA to highlight if/for/do/switch/while blocks☆62Updated 3 years ago
- Hardening code obfuscation against automated attacks☆143Updated last year
- Small programs and scripts that do not require their own repositories☆139Updated 3 years ago
- A dark Nord theme port for Hex Rays IDA☆102Updated 3 years ago
- Greybox Synthesizer geared for deobfuscation of assembly instructions.☆158Updated 7 months ago
- ☆206Updated 2 years ago
- IDAPatternSearch adds a capability of finding functions according to bit-patterns into the well-known IDA Pro disassembler based on Ghidr…☆64Updated 4 years ago
- Port of MBA Solver SiMBA to C/C++ (MBA deobfuscation in real world applications)☆93Updated 5 months ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆64Updated last year
- Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA☆141Updated last year
- Code deobfuscation framework to simplify Mixed Boolean-Arithmetic (MBA) expressions☆325Updated 5 months ago
- Assets for the "Tickling VMProtect with LLVM" blog post.☆156Updated 4 years ago
- Tool that automates some useful structure routines in IDA PRO☆82Updated last year
- IDA Pro plugin that displays all comments in a database☆69Updated last year
- A recursive disassembler written in Python. Most suitable for VMs in CTFs.☆21Updated 5 years ago
- Notes on using the Python bindings for the Unicorn Engine☆79Updated 5 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆63Updated 3 years ago
- ☆93Updated 5 years ago
- ☆109Updated 4 years ago
- IDA Plugin that fills in missing indirect CALL & JMP target information☆136Updated 8 months ago
- Bindings for Microsoft WinDBG TTD☆233Updated 2 years ago
- LLVM based static binary analysis framework☆260Updated 6 months ago
- Non-linear Mixed Boolean-Arithmetic Expressions☆66Updated last year
- How to setup Pycharm to run scripts in IDA using the Run menu (or a keybind)☆42Updated last year
- x64dbg plugin for running python3 script. Focus on doing malware analyst and unpacking☆60Updated 7 months ago
- Hex-Rays microcode API plugin for breaking an obfuscating compiler☆84Updated 6 years ago