trolldbois / python-haystackLinks
Process heap analysis framework - Windows/Linux - record type inference and forensics
☆94Updated 8 years ago
Alternatives and similar repositories for python-haystack
Users that are interested in python-haystack are comparing it to the libraries listed below
Sorting:
- Detects code differentials between executables in disk and the corresponding processes/modules in memory☆115Updated 5 years ago
- Basic command line, text-based, shellcode debugger.☆92Updated 8 years ago
- Simple shellcode decoder using unicorn-engine☆99Updated 10 years ago
- hackers-grep is a utility to search for strings in PE executables including imports, exports, and debug symbols☆171Updated 7 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆34Updated last year
- Statically linked Library detector☆70Updated 11 years ago
- map file generator for intel x86 binary based on flirt signature☆83Updated 9 years ago
- Imports MSDN documentation into IDA Pro☆52Updated 14 years ago
- swffile.py - SWF file parser module in Python☆28Updated 9 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 9 years ago
- The pyspresso package is a Python-based framework for debugging Java.☆50Updated 9 years ago
- Binary Analysis Platform☆74Updated 12 years ago
- IDATACO IDA Pro Plugin☆46Updated 9 years ago
- Distributing the REconstruction of High-Level IR for Large Scale Malware Analysis☆65Updated 10 years ago
- A Libemu Cython wrapper☆128Updated 2 years ago
- Some tutorials and examples for generic unpacking JAVA, .NET and x86/x64 code☆51Updated 9 years ago
- A search tool for IDA☆70Updated 9 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Updated 9 years ago
- Yet another Python library to read and write PE/PE+ files.☆78Updated 9 years ago
- Memory awesomeness.☆29Updated 10 years ago
- Identify botnet panels with Ensembled Decision Trees☆18Updated 9 years ago
- Writeups for various crackmes, CTFs, wargames, etc.☆15Updated 8 years ago
- ripPE - section extractor and profiler for PE file analysis☆33Updated 11 years ago
- Stealth's 64bit injectso port☆73Updated 15 years ago
- C++-based shellcode builder☆115Updated 5 years ago
- Vivisect Structure Definition/Parsing Library☆23Updated 8 years ago
- Patching Flash binary to stop Flash exploits and zero-days☆62Updated 8 years ago
- A Python library and tools providing easy access to the retdec.com decompilation service through their REST API.☆94Updated 7 years ago
- Python Application to Reverse Freezing☆36Updated 9 years ago
- A Toolkit to assist with the investigation of Sandboxing software☆49Updated 10 years ago