Automated multi-engine framework for unpacking, analyzing, and devirtualizing binaries protected by commercial and custom Virtual Machine based protectors. Combines Dynamic Taint Tracking, Symbolic Execution, Pattern & Semantic Classification, and Machine Learning–driven prioritization to dramatically reduce manual reverse engineering time.
☆435Jun 3, 2026Updated 3 months ago
Alternatives and similar repositories for VMDragonSlayer
Users that are interested in VMDragonSlayer are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Deobfuscation via optimization with usage of LLVM IR and parsing assembly.☆899May 8, 2026Updated 4 months ago
- Static devirtualizer for VMProtect 3.0-3.5. Lifts virtualized code to LLVM using Remill and strips the VM layer through optimization.☆314Jul 30, 2026Updated last month
- Rewrite and obfuscate code in compiled binaries☆277Dec 13, 2025Updated 9 months ago
- Themida 3.x research☆110Feb 28, 2025Updated last year
- LLVM based static binary analysis framework☆378Aug 15, 2026Updated 3 weeks ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Obfusk8: lightweight Obfuscation library based on C++17 / Header Only for windows binaries☆818Jun 25, 2026Updated 2 months ago
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆347Nov 20, 2025Updated 9 months ago
- Coefficient-Based Reconstruction of Arithmetic — a Mixed Boolean-Arithmetic (MBA) expression simplifier for deobfuscation☆338Aug 13, 2026Updated last month
- An x86-64 Code Virtualizer☆329Sep 26, 2024Updated last year
- IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformati…☆1,924Sep 2, 2026Updated last week
- binary instrumentation, analysis, and patching framework☆105Feb 20, 2026Updated 6 months ago
- x64 PE bin2bin obfuscator which doesn't add a section to the binary☆333Aug 18, 2026Updated 3 weeks ago
- Fast covert timing channel communication for inter-process and inter-processor communication on Windows systems.☆75Mar 24, 2026Updated 5 months ago
- Hijacking Hyper-V at Runtime with DDMA☆152Aug 13, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- An x86-64 code virtualizer for VM based obfuscation☆257Dec 21, 2024Updated last year
- A Windows Kernel Driver Emulator base on Unicorn, Kernel Memory Dump and some of native environment☆197Aug 27, 2026Updated 2 weeks ago
- memory introspection and reverse engineering hypervisor powered by leveraging Hyper-V☆770Jul 24, 2026Updated last month
- VTIL2 is a ground-up reimagination of the VTIL Project, completely rewritten in modern C# with enterprise-grade architecture, performance…☆72Oct 29, 2025Updated 10 months ago
- Windows 11 24H2-25H2 Runtime PatchGuard Bypass☆267Nov 4, 2025Updated 10 months ago
- An analysis and static deobfuscation of codedefender.io protected samples.☆96Apr 18, 2026Updated 4 months ago
- A cross-platform C++ framework for building Windows shellcode☆177Sep 4, 2026Updated last week
- Native code virtualizer for x64 binaries☆546Dec 20, 2024Updated last year
- Windows hypervisor for Intel x64: defensive host hypervisor for Windows designed to mitigate kernel-level attacks including BYOVD, compat…☆275Jul 18, 2026Updated last month
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- ☆105Oct 25, 2025Updated 10 months ago
- Efficient general mixed boolean-arithmetic (MBA) simplifier☆137Jul 25, 2026Updated last month
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆391Jul 29, 2024Updated 2 years ago
- An IDA Pro / Hex-Rays plugin that turns noisy pseudocode into reviewable, kernel-aware cleanup artifacts☆161Jul 7, 2026Updated 2 months ago
- [WIP] claude opus x86_64 disassembler/lifter/recompiler☆42Feb 12, 2026Updated 7 months ago
- Find out how to bypass HVCI (or not). My own research on Microsoft Warbird (specifically in clipsp.sys)☆100Oct 26, 2025Updated 10 months ago
- llvm powered deobfuscation of a vm-based protection☆63Feb 25, 2026Updated 6 months ago
- Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls☆292Jul 13, 2026Updated 2 months ago
- An x86/x64 import recovery and PE rebuilding tool for binaries protected with VMProtect (all versions)☆560Aug 17, 2026Updated 3 weeks ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A fast Windows emulator + debugger for reverse engineering. Runs any executable in debug mode, disassembles with Zydis, emulates instruct…☆213Jun 5, 2026Updated 3 months ago
- Striga is an experimental lifter from x86_64 to LLVM IR written in Python.☆111Jun 22, 2026Updated 2 months ago
- chernobog is a Hex-Rays decompiler plugin that defeats Hikari LLVM obfuscation.☆279Updated this week
- Yet another IDA Pro/Home plugin for deobfuscating stack strings☆161Mar 6, 2026Updated 6 months ago
- A static VMProtect unpacker for PE files, supports VMProtect 1.x–3.x and rebuilding unpacked PE images☆124Sep 5, 2026Updated last week
- Binary lifter and deobfuscator using remill for x86_64 Windows binaries☆100Apr 20, 2026Updated 4 months ago
- out-of-tree LLVM 21+ pass plugin for policy-driven IR obfuscation.☆108Aug 22, 2026Updated 3 weeks ago