FridaExtract is a Frida.re based RunPE extraction tool. https://t.co/TyaEml6z2Y
GitHub
OALabs/frida-extract
frida-extract - Frida.re based RunPE (and MapViewOfSection) extraction tool
Needle - modular framework to streamline the process of conducting security assessments of iOS apps. Based on Frida. https://t.co/3i9UYexVjl
GitHub
mwrlabs/needle
needle - The iOS Security Testing Framework.
quick_ioctl_decoder.py - Quick IOCTL Decoder. Based on IDAPython. https://t.co/wjTb1xPp3d
Gist
IDA Python plugin - Decode IOCTL Codes
Article:"Concolic Execution and Code Coverage with Triton" https://t.co/YLJ53gT0pd
Trust Research
Concolic Execution and Code Coverage with Triton
In this post, we introduce Salesforce RElabs group, one of our teams in charge of finding 0-days in third party applications that we use every day. We will discuss how we use Triton, a dynamic binary analysis framework, to execute code coverage analysis in…
libheap - python library for examining the glibc heap (ptmalloc). Based on gdb. https://t.co/tt4KGjLeYg
GitHub
cloudburst/libheap
libheap - python library for examining the glibc heap (ptmalloc)
ioctl_plugin - to help when dealing with IOCTL codes and Windows driver IOCTL dispatch functions.Based on IDAPython. https://t.co/2Y3UWn59Ef
GitHub
sam-b/ioctl_plugin
ioctl_plugin - A tool to help when dealing with IOCTL codes and Windows driver IOCTL dispatch functions.
yara_fn.py - generate a yara rule that matches the basic blocks of the current function in IDA. Based on IDAPython. https://t.co/QUkOWazzOy
Gist
generate a yara rule that matches the basic blocks of the current function in IDA Pro
Mechanical Phish - @shellphish's Cyber Reasoning System for the DARPA Cyber Grand Challenge. Based on angr. https://t.co/N9ySiyaTc3
GitHub
Mechanical Phish
@shellphish's Cyber Reasoning System for the DARPA Cyber Grand Challenge
rex - @shellphish's automated exploitation engine, originally created for the CGC. Based on angr, simuvex, tracer. https://t.co/rSaRHwl8uj
GitHub
shellphish/rex
rex - Shellphish's automated exploitation engine, originally created for the Cyber Grand Challenge.
MEAnalyzer - Intel Engine Firmware Analysis Tool. https://t.co/bilWsYfQmF
GitHub
platomav/MEAnalyzer
Intel Engine Firmware Analysis Tool. Contribute to platomav/MEAnalyzer development by creating an account on GitHub.
PeiBackdoor.py - infect raw flash images or individual UEFI PEI drivers with the backdoor code. https://t.co/DcuGrszE1e
Ablation - Augmenting Static Analysis Using Pintool. Output is IDAPython script. https://t.co/vinHX3kncC
GitHub
paulmehta/Ablation
Augmenting Static Analysis Using Pintool: Ablation
PyMal - interactive Malware Analysis Framework. Based on Pefile, Pydbg and Volatility. https://t.co/nC2gfTEaCM
GitHub
GitHub - cysinfo/PyMal: PyMal is a python based interactive Malware Analysis Framework. It is built on the top of three pure python…
PyMal is a python based interactive Malware Analysis Framework. It is built on the top of three pure python programes Pefile, Pydbg and Volatility. - GitHub - cysinfo/PyMal: PyMal is a python based...
PyQemu - dynamic binary instrumentation based crypto detection framework. https://t.co/gRS9NYHdNt
GitHub
pleed/pyqemu
pyqemu - Dynamic binary instrumentation based crypto detection framework. Implementation of http://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=6461007&isnumber=6460999
disasm - Interactive Disassembler GUI. Based on Capstone, elftools. https://t.co/wnqTmWAn1a
GitHub
mongodb-labs/disasm
Interactive Disassembler GUI. Contribute to mongodb-labs/disasm development by creating an account on GitHub.
Article: "Pythons and Unicorns and Hancitor…Oh My! Decoding Binaries Through Emulation". About Unicorn https://t.co/7oV0YLdhTS
Palo Alto Networks Blog
Pythons and Unicorns and Hancitor…Oh My! Decoding Binaries Through Emulation - Palo Alto Networks Blog
Unit 42 looks at decoding binaries through emulation.
Binary Ninja plugins, Based on Binary Ninja, voltron. https://t.co/7OwcQ4IhEx
GitHub
snare/binjatron
Binary Ninja plugin for Voltron integration. Contribute to snare/binjatron development by creating an account on GitHub.
SSMA is a simple malware analyzer written in Python 3. https://t.co/U3h7MjSm9x
GitHub
secrary/SSMA
SSMA - Simple Static Malware Analyzer. Contribute to secrary/SSMA development by creating an account on GitHub.
Scripts for reverse engineering the Shannon Baseband with the goal to exploit the Samsung Galaxy S6 https://t.co/WkNml3XnAO
GitHub
Comsecuris/shannonRE
Helpful scripts for various tasks performed during reverse engineering the Shannon Baseband with the goal to exploit the Samsung Galaxy S6 - Comsecuris/shannonRE
PINCE is a front-end/reverse engineering tool for the GNU Project Debugger (GDB), focused on games. https://t.co/mQw2aaHzar
GitHub
korcankaraokcu/PINCE
PINCE - A reverse engineering tool that'll (hopefully) supply the place of Cheat Engine for linux