necst / arancinoLinks
Arancino is a dynamic protection framework that defends Intel Pin against anti-instrumentation attacks.
☆72Updated 3 years ago
Alternatives and similar repositories for arancino
Users that are interested in arancino are comparing it to the libraries listed below
Sorting:
- ☆181Updated 7 years ago
- A DBI tool to discover heap memory related bugs☆126Updated 7 years ago
- SAFE embeddings to match functions in yara☆100Updated 5 years ago
- automated-arancino is a lightweight analysis framework to automate malware experiments.☆15Updated 8 years ago
- Security Evaluation of Dynamic Binary Instrumentation Engines☆81Updated 7 years ago
- PEDA-like debugger UI for WinDbg☆206Updated last year
- ☆87Updated 10 years ago
- VMI-Unpack - A Virtual Machine Introspection (VMI) based generic unpacker.☆57Updated 6 years ago
- ☆50Updated 5 years ago
- IDA plugin for software complexity metrics assessment☆60Updated 8 years ago
- This IDAPython script tags subroutines according to their use of imported functions☆74Updated 4 years ago
- ☆41Updated 8 years ago
- grap: define and match graph patterns within binaries☆156Updated 3 years ago
- Implementation of G-Free: Defeating Return-Oriented Programming through Gadget-less Binaries☆96Updated 7 years ago
- IDA plugin for reverse-engineering and dynamic interactions with the Binsec platform☆117Updated 8 years ago
- ☆89Updated 6 years ago
- Windows API tracer for malware (oldname: unitracer)☆120Updated 8 years ago
- Logic-Oriented Opaque Predicate Detection in Obfuscated Binary Code☆51Updated 10 years ago
- MrsPicky - An IDAPython decompiler script that helps auditing memcpy() and memmove() calls☆127Updated last year
- A branch-monitor-based solution for process monitoring.☆137Updated 5 years ago
- Collaborative reverse engineering plugin for IDA Pro. Latest version, including IDA 7.0 support, is not back ward compatible with earlier…☆100Updated 4 years ago
- ☆100Updated last year
- TaintInduce is a project which aims to automate the creation of taint propagation rules for unknown instruction sets.☆60Updated 5 years ago
- Kernel driver to fuzz Hyper-V hypercalls☆136Updated 6 years ago
- Toolkit for enriching and speeding up static malware analysis☆168Updated 4 years ago
- qb-sync is an open source tool to add some helpful glue between IDA Pro and Windbg. Its core feature is to dynamically synchronize IDA's …☆120Updated 10 years ago
- ☆20Updated 6 years ago
- Use angr inside the radare2 debugger. Create an angr state from the current debugger state.☆34Updated 6 years ago
- Some helper scripts to set up an environment for angr development.☆123Updated this week
- ☆99Updated last year