peta909's Stars
dnSpyEx/dnSpy
Unofficial revival of the well known .NET debugger and assembly editor, dnSpy
JonathanSalwan/Triton
Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
hfiref0x/KDU
Kernel Driver Utility
Idov31/Nidhogg
Nidhogg is an all-in-one simple to use windows kernel rootkit.
wavestone-cdt/EDRSandblast
igogo-x86/HexRaysPyTools
IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes
kevthehermit/RATDecoders
Python Decoders for Common Remote Access Trojans
mgeeky/ThreadStackSpoofer
Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation from scanners and analysts.
gaasedelen/patching
An Interactive Binary Patching Plugin for IDA Pro
corkami/docs
documentations, slides decks...
Dump-GUY/Malware-analysis-and-Reverse-engineering
Some of my publicly available Malware analysis and Reverse engineering.
NUL0x4C/AtomPePacker
A Highly capable Pe Packer
jstrosch/learning-malware-analysis
This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be compiled and used for learning purposes, without having to worry about handling live malware.
vxlang/vxlang-page
protector & obfuscator & code virtualizer
horsicq/XOpcodeCalc
Opcode calculator / ASM calculator
herosi/CTO
Call Tree Overviewer
allthingsida/qscripts
Programming productivity plugin for IDAPython and C++ development
dod-cyber-crime-center/DC3-MWCP
DC3 Malware Configuration Parser (DC3-MWCP) is a framework for parsing configuration information from malware. The information extracted from malware includes items such as addresses, passwords, filenames, and mutex names.
VollRagm/PTView
Browse Page Tables on Windows (Page Table Viewer)
OALabs/hexcopy-ida
IDA plugin for quickly copying disassembly as encoded hex bytes
peternguyen93/lldbinit
A fork version of lldbinit https://github.com/gdbinit/lldbinit
ioncodes/kdbg-driver-vagrant
fboldewin/misc_malware
manojpandey/rc4
Implementation of the stream cipher - RC4 (Rivest Cipher 4) using both Python 2.x and 3.x
star-sg/kernelcache_decryptor
Kernel Cache Decryption for iOS
limbernie/WSHooker
WSHooker — Windows Script Hooking with Frida
gkucherin/finspy_devirtualizer
cauliflowerdoughnuts/config_extractors
Configuration extractors/decryptors for various Windows malware families.
peta909/DrvMon
Advanced driver monitoring utility.
peta909/vxlang-page
protector & obfuscator & code virtualizer