nsacyber / BAMLinks
The Binary Analysis Metadata tool gathers information about Windows binaries to aid in their analysis. #nsacyber
☆162Updated last year
Alternatives and similar repositories for BAM
Users that are interested in BAM are comparing it to the libraries listed below
Sorting:
- Ghidra plugin for https://analyze.intezer.com☆72Updated 2 years ago
- ☆66Updated 6 years ago
- Supporting Data Archives for Ghidra☆190Updated 3 weeks ago
- FileInsight-plugins: decoding toolbox of McAfee FileInsight hex editor for malware analysis☆162Updated 9 months ago
- The content of this repository aims to assist efforts on analysing inner working principles, functionalities, and properties of the Micro…☆149Updated 5 years ago
- repository of tools & resources of the MMD team☆134Updated 3 years ago
- ☆106Updated 6 years ago
- Salvaging Static Analysis☆86Updated 6 years ago
- Balbuzard is a package of malware analysis tools in python to extract patterns of interest from suspicious files (IP addresses, domain na…☆139Updated 5 years ago
- Symbol hash for ELF files☆111Updated 3 years ago
- Parsers for custom malware formats ("Funky malware formats")☆97Updated 3 years ago
- A malware analysis and classification tool.☆190Updated 3 years ago
- MoP - "Master of Puppets" - Advanced malware tracking framework☆82Updated last year
- Automatically generate AV byte signatures from sets of similar binaries.☆280Updated 10 months ago
- An advanced memory forensics framework☆96Updated 6 years ago
- MSR Project Freta☆77Updated last year
- Capa analysis importer for Ghidra.☆63Updated 4 years ago
- A binary analysis framework☆134Updated 4 years ago
- Just a normal flask web app to understand win32api with code snippets and references.☆75Updated 5 years ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆160Updated 5 years ago
- Windows link file (shortcuts) examiner☆67Updated last year
- Official VirusTotal plugin for IDA Pro☆170Updated 2 weeks ago
- Ghidra scripts for malware analysis☆101Updated last year
- ☆225Updated 2 years ago
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆118Updated 2 years ago
- A novel technique to hide code from debuggers & disassemblers☆157Updated last year
- CLI tool to analyze PE files☆88Updated last year
- Reverse Engineering tools, scripts, and general commentary☆59Updated 6 years ago
- Process Spawn Control is a Powershell tool which aims to help in the behavioral (process) analysis of malware. PsC suspends newly launche…☆263Updated 3 years ago
- ☆27Updated 2 years ago