tianweiz07 / Cloud_IntegrityLinks
Using LibVMI to detect malware
☆31Updated 3 years ago
Alternatives and similar repositories for Cloud_Integrity
Users that are interested in Cloud_Integrity are comparing it to the libraries listed below
Sorting:
- VMI-Unpack - A Virtual Machine Introspection (VMI) based generic unpacker.☆56Updated 5 years ago
- ☆47Updated 6 years ago
- Security Evaluation of Dynamic Binary Instrumentation Engines☆80Updated 6 years ago
- Code for my blog post on using S2E for malware analysis☆25Updated 6 years ago
- ☆88Updated 10 years ago
- Exploits for YARA 3.7.1 & 3.8.1☆31Updated 6 years ago
- A framework for static analysis of ROP exploits and programs☆41Updated 6 years ago
- Runtime Prevention of Return-Oriented Programming Attacks☆81Updated 10 years ago
- ☆62Updated 2 years ago
- PoC LibVMI-based GDB server for virtual machines☆53Updated 7 years ago
- Final project for the M.Sc. in Engineering in Computer Science at Università degli Studi di Roma "La Sapienza" (A.Y. 2016/2017).☆34Updated 7 years ago
- Internet Explorer Exploit with CFG bypass for Windows 10☆55Updated 8 years ago
- x86 bootloader emulation with Miasm (case of NotPetya)☆43Updated 6 years ago
- Intel PT log analyzer With Parallel Processing And Basic Block Offset Caching Support☆71Updated last year
- PoC for CVE-2017-0075☆37Updated 5 years ago
- Course sample for SMT-Based Binary Program Analysis training class☆31Updated 7 years ago
- A Fuzzer for Windows NDIS Drivers OID Handlers☆94Updated 3 years ago
- A mutation based user mode (ring3) dumb in-memory Windows Kernel (IOCTL) Fuzzer/Logger. This script attach it self to any given process a…☆67Updated 11 years ago
- Tool to extract the kallsyms (System.map) from a memory dump☆28Updated last year
- A function tracer☆90Updated 6 years ago
- KVM-based virtual machine introspection for malware analysis☆29Updated 8 years ago
- SAFE embeddings to match functions in yara☆100Updated 5 years ago
- python library for dumping a linux process from memory☆34Updated 15 years ago
- [ARCHIVED] mov rax, ${Thalium/IceBox}; jmp rax;☆74Updated 6 years ago
- DataTracker: A Pin tool for collecting high-fidelity data provenance from unmodified programs.☆95Updated 7 years ago
- ☆50Updated 8 years ago
- An Extensible Dynamic Analysis Framework for IoT Devices☆21Updated 7 years ago
- ☆52Updated 6 years ago
- winAFL patch to enable network-based apps fuzzing☆37Updated 6 years ago
- Arancino is a dynamic protection framework that defends Intel Pin against anti-instrumentation attacks.☆72Updated 3 years ago