trolldbois / python-haystack
Process heap analysis framework - Windows/Linux - record type inference and forensics
☆96Updated 7 years ago
Alternatives and similar repositories for python-haystack:
Users that are interested in python-haystack are comparing it to the libraries listed below
- map file generator for intel x86 binary based on flirt signature☆84Updated 8 years ago
- Detects code differentials between executables in disk and the corresponding processes/modules in memory☆115Updated 4 years ago
- hackers-grep is a utility to search for strings in PE executables including imports, exports, and debug symbols☆170Updated 6 years ago
- Statically linked Library detector☆70Updated 10 years ago
- ☆109Updated 7 years ago
- A search tool for IDA☆70Updated 8 years ago
- Simple shellcode decoder using unicorn-engine☆99Updated 9 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- A Libemu Cython wrapper☆126Updated last year
- Identify botnet panels with Ensembled Decision Trees☆18Updated 8 years ago
- swffile.py - SWF file parser module in Python☆28Updated 9 years ago
- Imports MSDN documentation into IDA Pro☆51Updated 13 years ago
- ☆91Updated 8 years ago
- Automatically exported from code.google.com/p/malware-lu☆55Updated 5 years ago
- "Just Another ReVersIng Suite" or whatever other bullshit you can think of☆150Updated last year
- Some tutorials and examples for generic unpacking JAVA, .NET and x86/x64 code☆51Updated 8 years ago
- ripPE - section extractor and profiler for PE file analysis☆32Updated 10 years ago
- A clone (of the basic core) of AFL fuzzer☆74Updated 9 years ago
- Patching Flash binary to stop Flash exploits and zero-days☆62Updated 8 years ago
- Distributing the REconstruction of High-Level IR for Large Scale Malware Analysis☆66Updated 9 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- Python Application to Reverse Freezing☆36Updated 8 years ago
- IDATACO IDA Pro Plugin☆47Updated 8 years ago
- A place holder for Keystone repo. See https://github.com/keystone-engine/keystone for the real stuff☆67Updated 3 years ago
- A set of scripts for a radare-based malware code analysis workflow☆67Updated 6 years ago
- capstone based disassembler for extracting to binnavi☆227Updated 8 years ago
- Collection of scripts that were once useful for reverse engineering things☆74Updated 14 years ago
- Yet another Python library to read and write PE/PE+ files.☆80Updated 8 years ago
- Memory awesomeness.☆29Updated 10 years ago
- Small tool for disassembling shellcode (using objdump)☆148Updated 2 years ago