Automated multi-engine framework for unpacking, analyzing, and devirtualizing binaries protected by commercial and custom Virtual Machine based protectors. Combines Dynamic Taint Tracking, Symbolic Execution, Pattern & Semantic Classification, and Machine Learning–driven prioritization to dramatically reduce manual reverse engineering time.
☆431Jun 3, 2026Updated 2 months ago
Alternatives and similar repositories for VMDragonSlayer
Users that are interested in VMDragonSlayer are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Deobfuscation via optimization with usage of LLVM IR and parsing assembly.☆887May 8, 2026Updated 3 months ago
- Static devirtualizer for VMProtect 3.0-3.5. Lifts virtualized code to LLVM using Remill and strips the VM layer through optimization.☆314Jul 30, 2026Updated 3 weeks ago
- Rewrite and obfuscate code in compiled binaries☆277Dec 13, 2025Updated 8 months ago
- Themida 3.x research☆109Feb 28, 2025Updated last year
- LLVM based static binary analysis framework☆369Aug 15, 2026Updated last week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Obfusk8: lightweight Obfuscation library based on C++17 / Header Only for windows binaries☆806Jun 25, 2026Updated last month
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆343Nov 20, 2025Updated 9 months ago
- Coefficient-Based Reconstruction of Arithmetic — a Mixed Boolean-Arithmetic (MBA) expression simplifier for deobfuscation☆327Aug 13, 2026Updated last week
- An x86-64 Code Virtualizer☆327Sep 26, 2024Updated last year
- IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformati…☆1,912Aug 10, 2026Updated 2 weeks ago
- binary instrumentation, analysis, and patching framework☆104Feb 20, 2026Updated 6 months ago
- x64 PE bin2bin obfuscator which doesn't add a section to the binary☆317Updated this week
- Fast covert timing channel communication for inter-process and inter-processor communication on Windows systems.☆74Mar 24, 2026Updated 4 months ago
- Hijacking Hyper-V at Runtime with DDMA☆149Aug 13, 2025Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- An x86-64 code virtualizer for VM based obfuscation☆251Dec 21, 2024Updated last year
- A Windows Kernel Driver Emulator base on Unicorn, Kernel Memory Dump and some of native environment☆191Jan 15, 2026Updated 7 months ago
- memory introspection and reverse engineering hypervisor powered by leveraging Hyper-V☆741Jul 24, 2026Updated last month
- VTIL2 is a ground-up reimagination of the VTIL Project, completely rewritten in modern C# with enterprise-grade architecture, performance…☆70Oct 29, 2025Updated 9 months ago
- Windows 11 24H2-25H2 Runtime PatchGuard Bypass☆265Nov 4, 2025Updated 9 months ago
- An analysis and static deobfuscation of codedefender.io protected samples.☆87Apr 18, 2026Updated 4 months ago
- A cross-platform C++ framework for building Windows shellcode☆176Apr 21, 2026Updated 4 months ago
- Native code virtualizer for x64 binaries☆542Dec 20, 2024Updated last year
- Windows hypervisor for Intel x64: defensive host hypervisor for Windows designed to mitigate kernel-level attacks including BYOVD, compat…☆273Jul 18, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆101Oct 25, 2025Updated 9 months ago
- Efficient general mixed boolean-arithmetic (MBA) simplifier☆135Jul 25, 2026Updated 3 weeks ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆389Jul 29, 2024Updated 2 years ago
- An IDA Pro / Hex-Rays plugin that turns noisy pseudocode into reviewable, kernel-aware cleanup artifacts☆158Jul 7, 2026Updated last month
- [WIP] claude opus x86_64 disassembler/lifter/recompiler☆43Feb 12, 2026Updated 6 months ago
- Find out how to bypass HVCI (or not). My own research on Microsoft Warbird (specifically in clipsp.sys)☆99Oct 26, 2025Updated 9 months ago
- Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls☆289Jul 13, 2026Updated last month
- llvm powered deobfuscation of a vm-based protection☆61Feb 25, 2026Updated 5 months ago
- An x86/x64 import recovery and PE rebuilding tool for binaries protected with VMProtect (all versions)☆534Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A static VMProtect unpacker for PE files, supports VMProtect 1.x–3.x and rebuilding unpacked PE images☆106Aug 14, 2026Updated last week
- Striga is an experimental lifter from x86_64 to LLVM IR written in Python.☆108Jun 22, 2026Updated 2 months ago
- A fast Windows emulator + debugger for reverse engineering. Runs any executable in debug mode, disassembles with Zydis, emulates instruct…☆214Jun 5, 2026Updated 2 months ago
- Yet another IDA Pro/Home plugin for deobfuscating stack strings☆156Mar 6, 2026Updated 5 months ago
- chernobog is a Hex-Rays decompiler plugin that defeats Hikari LLVM obfuscation.☆272Updated this week
- IDA Pro plugin that speeds up the initial binary auto analysis through a caching technique☆231Jul 9, 2026Updated last month
- Cracking MBAs☆56Jul 31, 2026Updated 3 weeks ago