Open Source eBPF Malware Analysis Framework
☆54Oct 20, 2024Updated last year
Alternatives and similar repositories for Kairos
Users that are interested in Kairos are comparing it to the libraries listed below
Sorting:
- Example of an ELF parser to learn about the ELF format☆11Oct 6, 2024Updated last year
- RE for champions☆15Updated this week
- Windows Minidump loader for Ghidra☆29Sep 30, 2022Updated 3 years ago
- Easily search LLVM headers for all major versions!☆19Sep 14, 2025Updated 5 months ago
- Lightweight PDB symbol parser and resolver☆28Oct 28, 2024Updated last year
- LLVM Graph View for VSCode☆40Mar 25, 2025Updated 11 months ago
- Sample/PoC Windows kernel driver for detect DMA devices by using Vendor ID and Device ID signatures☆38Sep 22, 2024Updated last year
- SLOT: SMT-LLVM Optimizing Translation☆60Apr 17, 2025Updated 10 months ago
- Rule Engine for Dynamic Malware Analysis and Research☆25Apr 16, 2025Updated 10 months ago
- Python bindings for the Icicle emulator.☆41Nov 6, 2025Updated 3 months ago
- A simple UEFI bootkit made by @NSG650 and me.☆26Dec 29, 2024Updated last year
- Java decompilation & deobfuscation lab - dockerized toolset☆15Feb 15, 2026Updated 2 weeks ago
- PDB Rewriting Rust Library☆27Apr 26, 2024Updated last year
- Mixed Boolean Arithmetic Simplification using E-Graphs☆24May 1, 2025Updated 10 months ago
- ☆10Jul 1, 2023Updated 2 years ago
- POC for CVE-2023-29360☆12Aug 31, 2024Updated last year
- Awesome list of Living off the Land (LOL) methods, tools, and features commonly abused by attackers☆34Updated this week
- ☆33Jan 23, 2025Updated last year
- tvisor is a tiny 100% userspace syscall interception framework☆46Apr 13, 2024Updated last year
- IDA plugin to support automatic reverse engineering☆80Feb 28, 2025Updated last year
- POC about how to detect windows kernel debug by pool tag.☆13Nov 29, 2023Updated 2 years ago
- LLVM-based ROP obfuscated compiler☆13Mar 24, 2022Updated 3 years ago
- Small OBJ/Archive Obfuscation framework☆14Nov 9, 2023Updated 2 years ago
- Small micro-coded RISC-V softcore☆15Nov 27, 2018Updated 7 years ago
- Self-hosting binary instrumentation framework for security research☆12Apr 10, 2023Updated 2 years ago
- ☆12Jun 22, 2022Updated 3 years ago
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆41Nov 28, 2023Updated 2 years ago
- Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book☆118Jun 30, 2024Updated last year
- Mixed Boolean-Arithmetic in Rust for WebAssembly☆30Jun 14, 2025Updated 8 months ago
- Various WinDbg extensions and scripts☆33Sep 13, 2018Updated 7 years ago
- Python bindings for the Microsoft Hypervisor Platform APIs.☆80Jun 22, 2019Updated 6 years ago
- Direct, source-level WebAssembly debugger☆53Mar 15, 2021Updated 4 years ago
- ☆17Sep 25, 2024Updated last year
- Utility library to display license notices☆12Feb 19, 2026Updated last week
- ☆12Nov 6, 2017Updated 8 years ago
- ☆16Jul 17, 2024Updated last year
- Proof Of Concepts☆55Jan 4, 2026Updated 2 months ago
- Differents WebShell usefull for CTF☆12Jul 21, 2017Updated 8 years ago
- Specific implementation (based on the public rbuilder) of a block builder to be used on a TDX context.☆18Sep 30, 2025Updated 5 months ago