nsacyber / BAM
The Binary Analysis Metadata tool gathers information about Windows binaries to aid in their analysis. #nsacyber
☆159Updated 10 months ago
Alternatives and similar repositories for BAM:
Users that are interested in BAM are comparing it to the libraries listed below
- Ghidra scripts for malware analysis☆91Updated last year
- Automatically generate AV byte signatures from sets of similar binaries.☆263Updated 2 months ago
- repository of tools & resources of the MMD team☆131Updated 2 years ago
- ☆63Updated 5 years ago
- FileInsight-plugins: decoding toolbox of McAfee FileInsight hex editor for malware analysis☆159Updated 2 months ago
- Supporting Data Archives for Ghidra☆179Updated last week
- Parsers for custom malware formats ("Funky malware formats")☆93Updated 3 years ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆157Updated 5 years ago
- Generating YARA rules based on binary code☆205Updated 3 years ago
- A malware analysis and classification tool.☆191Updated 3 years ago
- MSR Project Freta☆76Updated 7 months ago
- Symbol hash for ELF files☆108Updated 3 years ago
- PeaceMaker Threat Detection is a Windows kernel-based application that detects advanced techniques used by malware.☆418Updated 4 years ago
- ☆105Updated 5 years ago
- Hollowfind is a Volatility plugin to detect different types of process hollowing techniques used in the wild to bypass, confuse, deflect …☆132Updated 2 years ago
- CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is a "mirror" -- p…☆126Updated 3 months ago
- DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior☆272Updated 5 years ago
- MoP - "Master of Puppets" - Advanced malware tracking framework☆82Updated 6 months ago
- ☆145Updated 8 months ago
- Ghidra plugin for https://analyze.intezer.com☆70Updated 2 years ago
- Malduck is your ducky companion in malware analysis journeys☆326Updated 8 months ago
- The content of this repository aims to assist efforts on analysing inner working principles, functionalities, and properties of the Micro…☆151Updated 4 years ago
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆113Updated last year
- https://www.malwaretech.com/beginner-malware-reversing-challenges☆62Updated 5 years ago
- A golang CLI tool to download malware from a variety of sources.☆142Updated last year
- Live hunting of code injection techniques☆380Updated 5 years ago
- Vocabulary Scraper script used in FLARE's analysis of Russian-language Carbanak source code☆37Updated 5 years ago
- Smart DLL execution for malware analysis in sandbox systems☆143Updated 10 years ago
- Various capabilities for static malware analysis.☆77Updated 5 months ago
- Automatic YARA rule generation for Malpedia☆158Updated 2 years ago