Keypatch is a IDA Pro plugin for Keystone Assembler Engine. https://t.co/JiAFGBDjtN
www.keystone-engine.org
Keypatch
The Ultimate Assembler
AVulnerabilityChecker - check vulnerable to exploitable constant RWX addresses (AVs vulnerability).Based on wiappdbg https://t.co/0jFSG8yXnY
GitHub
BreakingMalware/AVulnerabilityChecker
AVulnerabilityChecker - Tool to check if your computer is likely to be vulnerable to exploitable constant Read-Write-Execute (RWX) addresses (AVs vulnerability)
metame is a metamorphic code engine for arbitrary executables. Based on keystone, radare. https://t.co/sqUNjiS2CK
GitHub
a0rtega/metame
metame is a metamorphic code engine for arbitrary executables - a0rtega/metame
patchkit - powerful binary patching on Python. Based on Keystone, Unicorn, Capstone, IDAPython. https://t.co/CkmiwEoz77
GitHub
lunixbochs/patchkit
patchkit - powerful binary patching from Python
Article: "Angr management: first steps and limitations" https://t.co/U1b2nd9gn9
CyberSmashup
Angr management: first steps and limitations
Introduction Last summer I took some time to finally learn about Z3 as I was solving some crackme (see Using Z3 to solve crackme) but in order to stay true to my hipster reputation I had to try som…
FridaExtract is a Frida.re based RunPE extraction tool. https://t.co/TyaEml6z2Y
GitHub
OALabs/frida-extract
frida-extract - Frida.re based RunPE (and MapViewOfSection) extraction tool
Needle - modular framework to streamline the process of conducting security assessments of iOS apps. Based on Frida. https://t.co/3i9UYexVjl
GitHub
mwrlabs/needle
needle - The iOS Security Testing Framework.
quick_ioctl_decoder.py - Quick IOCTL Decoder. Based on IDAPython. https://t.co/wjTb1xPp3d
Gist
IDA Python plugin - Decode IOCTL Codes
Article:"Concolic Execution and Code Coverage with Triton" https://t.co/YLJ53gT0pd
Trust Research
Concolic Execution and Code Coverage with Triton
In this post, we introduce Salesforce RElabs group, one of our teams in charge of finding 0-days in third party applications that we use every day. We will discuss how we use Triton, a dynamic binary analysis framework, to execute code coverage analysis in…
libheap - python library for examining the glibc heap (ptmalloc). Based on gdb. https://t.co/tt4KGjLeYg
GitHub
cloudburst/libheap
libheap - python library for examining the glibc heap (ptmalloc)
ioctl_plugin - to help when dealing with IOCTL codes and Windows driver IOCTL dispatch functions.Based on IDAPython. https://t.co/2Y3UWn59Ef
GitHub
sam-b/ioctl_plugin
ioctl_plugin - A tool to help when dealing with IOCTL codes and Windows driver IOCTL dispatch functions.
yara_fn.py - generate a yara rule that matches the basic blocks of the current function in IDA. Based on IDAPython. https://t.co/QUkOWazzOy
Gist
generate a yara rule that matches the basic blocks of the current function in IDA Pro
Mechanical Phish - @shellphish's Cyber Reasoning System for the DARPA Cyber Grand Challenge. Based on angr. https://t.co/N9ySiyaTc3
GitHub
Mechanical Phish
@shellphish's Cyber Reasoning System for the DARPA Cyber Grand Challenge
rex - @shellphish's automated exploitation engine, originally created for the CGC. Based on angr, simuvex, tracer. https://t.co/rSaRHwl8uj
GitHub
shellphish/rex
rex - Shellphish's automated exploitation engine, originally created for the Cyber Grand Challenge.
MEAnalyzer - Intel Engine Firmware Analysis Tool. https://t.co/bilWsYfQmF
GitHub
platomav/MEAnalyzer
Intel Engine Firmware Analysis Tool. Contribute to platomav/MEAnalyzer development by creating an account on GitHub.
PeiBackdoor.py - infect raw flash images or individual UEFI PEI drivers with the backdoor code. https://t.co/DcuGrszE1e
Ablation - Augmenting Static Analysis Using Pintool. Output is IDAPython script. https://t.co/vinHX3kncC
GitHub
paulmehta/Ablation
Augmenting Static Analysis Using Pintool: Ablation
PyMal - interactive Malware Analysis Framework. Based on Pefile, Pydbg and Volatility. https://t.co/nC2gfTEaCM
GitHub
GitHub - cysinfo/PyMal: PyMal is a python based interactive Malware Analysis Framework. It is built on the top of three pure python…
PyMal is a python based interactive Malware Analysis Framework. It is built on the top of three pure python programes Pefile, Pydbg and Volatility. - GitHub - cysinfo/PyMal: PyMal is a python based...
PyQemu - dynamic binary instrumentation based crypto detection framework. https://t.co/gRS9NYHdNt
GitHub
pleed/pyqemu
pyqemu - Dynamic binary instrumentation based crypto detection framework. Implementation of http://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=6461007&isnumber=6460999