sterrasec / anti-disassembly-pocLinks
A collection of Proof-of-Concept implementations of various anti-disassembly techniques for ARM32 and ARM64 architectures.
☆73Updated 9 months ago
Alternatives and similar repositories for anti-disassembly-poc
Users that are interested in anti-disassembly-poc are comparing it to the libraries listed below
Sorting:
- dynamic binary instrumentation, analysis, and patching framework☆99Updated this week
- Plugin interface for remote communications with Binary Ninja database and MCP server for interfacing with LLMs.☆52Updated 7 months ago
- Binary Ninja plugin to analyze and simplify obfuscated code☆235Updated 3 months ago
- Windows kernel debugger for Linux hosts running Windows under KVM/QEMU☆114Updated last month
- This IDA plugin extends the functionality of the assembly and hex view. With this plugin, you can conveniently decode/decrypt/alter data …☆86Updated 7 months ago
- A high-performance C++ framework for emulating executable binaries☆128Updated last month
- A set of LLVM and GCC based plugins that perform code obfuscation.☆136Updated 3 months ago
- LLVM based obfuscation engine☆109Updated 7 months ago
- ☆157Updated 2 weeks ago
- WinDbg extension written in Rust to dump the CPU / memory state of a running VM☆125Updated 3 months ago
- Code proving a 25-year blind spot in all disassemblers. PoC for Intel x64/x86 “ghost instructions.”☆110Updated 2 months ago
- ☆27Updated 4 months ago
- Disassembler for Zeus VM custom instruction set☆30Updated last year
- an obfuscator based on LLVM which can obfuscate the program execution trajectory☆106Updated 4 years ago
- Rewrite and obfuscate code in compiled binaries☆273Updated last month
- breaking decompilers☆56Updated 8 months ago
- Generate a PDB file given the old PDB file and an address mapping☆51Updated 5 months ago
- Rule Engine for Dynamic Malware Analysis and Research☆25Updated 9 months ago
- IDA Taskr is a pure Python library for IDA Pro related parallel computing. It lets you use the power of Qt (built-in to IDA!) and Python'…☆30Updated last month
- Virtual Trust Level (VTL 1) secure call tracing☆86Updated 4 months ago
- Assisting Go Analysis and Reversing☆96Updated 2 months ago
- A journal for $6,000 Riot Vanguard bounty.☆67Updated 2 years ago
- Yet another LLVM-based obfuscator☆124Updated last year
- An IDA Pro plugin that display cross-references to functions or variables across the entire binary in Hex-Rays pseudocode☆125Updated 4 months ago
- LLVM Pass to save Reverse Engineers from Automation☆112Updated 9 months ago
- ☆29Updated this week
- MCP for reverse engineering☆46Updated 9 months ago
- ☆89Updated 11 months ago
- Report and exploit of CVE-2024-21305.☆38Updated 2 years ago
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆41Updated 2 years ago