williballenthin / siglib
function identification signatures
☆12Updated 4 years ago
Alternatives and similar repositories for siglib:
Users that are interested in siglib are comparing it to the libraries listed below
- ☆28Updated 4 years ago
- x64dbg Malware Plugin. Detect malicious materials☆15Updated 4 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- ☆21Updated 3 years ago
- A wrapper for capstone for bearparser☆14Updated 2 years ago
- An Integrity-Check Monitoring Pintool☆57Updated 4 years ago
- Static analysis tools for x86 assembly☆13Updated 8 years ago
- IDA plugin to quickly learn what a shortcut does☆10Updated 3 years ago
- ☆14Updated 4 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆35Updated 3 years ago
- Extract data of TTD trace file to a minidump☆28Updated last year
- IDA Pro Python plugin to analyze and annotate Linux kernel alternatives☆23Updated 3 years ago
- IDAPython scripts☆15Updated 7 years ago
- A set of small utilities, helpers for PIN tracers☆33Updated last year
- Implementation trade-offs in using Intel Pin for instruction tracing of complex programs☆15Updated 5 years ago
- Collection of IDA Pro/Hex-Rays configs, scripts, and plugins☆23Updated 5 years ago
- API logger plugin for Intel Pintool☆14Updated 7 years ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆60Updated 8 months ago
- Utilities for working with vivisect☆25Updated 2 months ago
- Exports monitoring plugin for x64dbg☆22Updated 2 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 8 years ago
- IDARay is an IDA Pro plugin that matches the database against multiple YARA files which themselves may contain multiple rules.☆18Updated 6 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- docker-compose to deploy CTFd w/ ghidragolf configurations☆12Updated 2 years ago
- LLVM based devirtualization PoC’s.☆20Updated 3 years ago
- ☆24Updated 3 years ago
- ☆13Updated 7 years ago
- Course sample for SMT-Based Binary Program Analysis training class☆31Updated 7 years ago
- Code Integrity Violation Spotter☆16Updated 10 months ago
- A python script that can be used to scan data within in an IDB using Yara.☆22Updated 6 years ago