n1ght-w0lf / HawkEye
Malware dynamic instrumentation tool based on frida framework
☆104Updated 4 years ago
Alternatives and similar repositories for HawkEye:
Users that are interested in HawkEye are comparing it to the libraries listed below
- Go Lang Portable Executable Parser☆39Updated 3 years ago
- Ebfuscator: Abusing system errors for binary obfuscation☆52Updated 4 years ago
- IDA python plugin to scan binary with Yara rules☆173Updated last year
- Write-ups for crackmes and CTF challenges☆51Updated 2 years ago
- Capa analysis importer for Ghidra.☆61Updated 4 years ago
- Malware Configuration Extraction Modules☆49Updated last year
- Parsers for custom malware formats ("Funky malware formats")☆95Updated 3 years ago
- ☆69Updated last year
- ☆105Updated last year
- WIP Emotet Control Flow Unflattening using miasm and radare2☆23Updated 2 years ago
- An IDA Pro extension for easier (malware) reverse engineering☆111Updated 2 years ago
- Robust Automated Malware Unpacker☆84Updated last year
- This framework enables user to discover JOP gagdets and can automate building a complete JOP chain to bypass DEP. JOP ROCKET is the ultim…☆102Updated 6 months ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆158Updated 5 years ago
- Automatically rebuild Import Address Table for dumped PE file. With python bindings!☆118Updated 6 years ago
- API Logger for Windows Executables☆78Updated 4 years ago
- IDA Pro plugin for recognizing known hashes of API function names☆81Updated 2 years ago
- Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack sur…☆67Updated 4 years ago
- TrashDBG the world's worse debugger☆23Updated 3 years ago
- Multi-tool reverse engineering collaboration solution.☆138Updated 11 months ago
- pyGoRE - Python library for analyzing Go binaries☆64Updated 3 years ago
- Writeups for CTF challenges☆30Updated last year
- Frida.re based RunPE (and MapViewOfSection) extraction tool☆111Updated 8 years ago
- Anti-reverse Compilation☆32Updated 3 years ago
- A small utility to deal with malware embedded hashes.☆49Updated last year
- The MinHash-based Code Relationship & Investigation Toolkit (MCRIT) is a framework created to simplify the application of the MinHash alg…☆90Updated last week
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆163Updated 3 weeks ago
- Script analysis tool based on Frida.re☆129Updated 7 years ago
- Resources for the workshop titled "Repacking the unpacker: Applying Time Travel Debugging to malware analysis", given at HackLu 2019☆40Updated 5 years ago
- ☆108Updated 4 years ago