seifreed / yaraastLinks
A powerful Python library and CLI tool for parsing, analyzing, and manipulating YARA rules through Abstract Syntax Tree (AST) representation
☆47Updated last week
Alternatives and similar repositories for yaraast
Users that are interested in yaraast are comparing it to the libraries listed below
Sorting:
- This repository contains an IDA processor for loading and disassembling compiled yara rules.☆43Updated last year
- Golem automates C/C++ vulnerability discovery with SemGrep+LLVM+LLM☆95Updated 6 months ago
- BinjaryNinja plugin for a ShellStorm like assembly/disassembly experience☆17Updated last year
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆71Updated last year
- This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.☆52Updated 4 months ago
- RenameLocalVars is an IDA plugin that renames local variables to something easier to read.☆15Updated 2 years ago
- ☆89Updated 10 months ago
- ☆74Updated last year
- ☆24Updated last year
- Plugin interface for remote communications with Binary Ninja database and MCP server for interfacing with LLMs.☆51Updated 7 months ago
- Extract data of TTD trace file to a minidump☆31Updated 2 years ago
- BINARLY Research Tools and PoCs☆39Updated last year
- How to retro theme your Ghidra☆35Updated 2 months ago
- ☆85Updated 4 months ago
- ☆31Updated 10 months ago
- A collection of ready-to-use library code and symbols for the MinHash-based Code Relationship & Investigation Toolkit (MCRIT)☆12Updated 3 weeks ago
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆57Updated 3 years ago
- ☆82Updated last year
- ☆35Updated 11 months ago
- Reverse engineering assistant that extracts strings and related pseudocode from a binary file.☆89Updated this week
- This IDA plugin extends the functionality of the assembly and hex view. With this plugin, you can conveniently decode/decrypt/alter data …☆86Updated 7 months ago
- Winbindex bot to pull in binaries for specific releases☆48Updated 2 years ago
- A command line tool for extracting machine learning ready data from software binaries powered by Radare2☆72Updated 7 months ago
- Open Source eBPF Malware Analysis Framework☆53Updated last year
- This is a little plugin to copy disassembly in a way that is usable in YARA rules!☆47Updated 8 months ago
- SPI flash read MitM attack PoC☆40Updated 3 years ago
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated 2 years ago
- Diaphora Machine Learning tools and datasets☆23Updated last year
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆121Updated last year
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆43Updated last year