Reverse Engineering
前往频道在 Telegram
4 786
订阅者
无数据24 小时
+127 天
+5430 天
帖子存档
4 786
Simple No-meaning Assembly Omitter for IDA Pro (This is just a prototype)
https://github.com/tkmru/nao
4 786
Ghidra Python Scripting Cheat-sheet
https://github.com/ghidraninja/ghidra_scripts/wiki/Python-Scripting-Cheat-Sheet
4 786
Nightmare is an intro to binary exploitation / reverse engineering course based around ctf challenges.
https://github.com/guyinatuxedo/nightmare
4 786
Windows Process Injection in 2019
https://i.blackhat.com/USA-19/Thursday/us-19-Kotler-Process-Injection-Techniques-Gotta-Catch-Them-All-wp.pdf
4 786
Reverse engineering a Gameboy ROM with radare2
https://www.megabeets.net/reverse-engineering-a-gameboy-rom-with-radare2/
4 786
Squalr is performant Memory Editing software that allows users to create and share cheats in their windows desktop games. This includes memory scanning, pointers, x86/x64 assembly injection, and so on.
https://github.com/Squalr/Squalr
4 786
UNPACME is an automated malware unpacking service. Submissions to UNPACME are analyzed using a set of custom unpacking processes maintained by OpenAnalysis. These processes extract all encrypted or packed payloads from the submission and return a unique set of payloads to the user. In short, UNPACME automates the first step in your malware analysis process.
https://www.unpac.me/
4 786
abuse.ch is operated by a random swiss guy fighting malware for non-profit,
running a couple of projects helping internet service providers and network operators protecting
their infrastructure from malware. IT-Security researchers, vendors and law enforcement agencies rely
on data from abuse.ch, trying to make the internet a safer place.
https://abuse.ch
4 786
DbgChild is a stand alone tool for debugging child processes (auto attach).
https://github.com/David-Reguera-Garcia-Dreg/DbgChild
4 786
Python-Based Malware Uses NSA Exploit to Propagate Monero (XMR) Miner
https://www.fortinet.com/blog/threat-research/python-based-malware-uses-nsa-exploit-to-propagate-monero--xmr--.html
4 786
deReferencing is an IDA Pro plugin that implements new registers and stack views. Adds dereferenced pointers, colors and other useful information, similar to some GDB plugins (e.g: PEDA, GEF, pwndbg, etc).
Supports following architectures: x86, x86-64, ARM, ARM64, MIPS32 and MIPS64
https://github.com/danigargu/deREferencing
4 786
AgentTesla: Deep analysis of a visual basic spyware Trojan
https://www.reb311ion.com/MalwareAnalysisReports/AgentTesla/
4 786
Hi everyone! We are so happy to announce that we finally implemented a debugger in Cutter! 🎉
The beta version of the debugger is available NOW on the Master branch so you can build the recent version of Cutter or download the precompiled executable from Appveyor (if you're on Windows).
We will release the debugger officially in about a week, until then - we are looking forward to your feedback so please make sure to try it and report us any issue or feature requests you have. 🍻
https://github.com/radareorg/cutter
