shuakabane / stelftools
cross-architecture static library detector for IoT malware
☆33Updated last year
Related projects ⓘ
Alternatives and complementary repositories for stelftools
- A collection of resources/tools and analyses for the angr binary analysis framework.☆166Updated 2 years ago
- Triton-based DSE library with loading and exploration capabilities (and more!)☆107Updated 3 weeks ago
- Python bindings to Ghidra's SLEIGH library for disassembly and lifting to P-Code IR☆184Updated this week
- The SAILR paper's evaluation pipline for measuring the quality of decompilation☆98Updated last week
- Make the Windows API in Ghidra easy to read and informative.☆25Updated 2 years ago
- Run IDA scripts headlessly.☆119Updated 3 weeks ago
- IDA Pro to Ghidra Key Bindings to feel like if you were in IDA Pro when navigating☆86Updated 5 years ago
- Flex 'em lexers☆38Updated 4 years ago
- symbolic execution plugin for binary ninja☆249Updated 8 months ago
- Nampa - FLIRT for (binary) ninjas☆89Updated 2 years ago
- Security Camp 2021 & GCC 2022☆112Updated 2 years ago
- Generates `.pyi` type stubs for the entire Ghidra API☆145Updated 2 weeks ago
- PAWNYABLE!☆192Updated 5 months ago
- An binary-to-LLVM IR lifter that leverages Ghidra's IR and analysis☆211Updated 4 years ago
- Assets used in lecture "手を動かして理解するLinux Kernel Exploit" at SecurityCamp2023.☆11Updated last year
- Code and exercises for a workshop on z3 and angr☆222Updated 3 years ago
- Ghidra scripts for malware analysis☆90Updated 10 months ago
- ☆22Updated last year
- small cute utils for kernel challenges☆27Updated 6 months ago
- A library for writing plugins in any decompiler: includes API lifting, common data formatting, and GUI abstraction!☆73Updated last week
- Ghidra Emulates Functions☆53Updated 4 years ago
- Pyhidra is a Python library that provides direct access to the Ghidra API within a native CPython interpreter using jpype.☆183Updated 3 weeks ago
- Control-flow-flattening and string deobfuscator☆147Updated 3 years ago
- Make your Ghidra Lazy!☆137Updated 4 years ago
- Tool that converts All of libc to signatures for IDA Pro FLIRT Plugin. and utility make sig with FLAIR easily☆161Updated last year
- A /proc/mem IDA loader to snapshot a running process☆160Updated 2 years ago
- ☆174Updated 11 months ago
- PoC of fuzzing closed-source userspace binaries with KVM☆164Updated 6 months ago
- Unofficial CMake build for Ghidra's C++ SLEIGH code☆140Updated last week
- ☆139Updated 3 weeks ago