ru
Feedback
Reverse Engineering

Reverse Engineering

Открыть в Telegram

Everything is open-source. The official community group: @reverseengineeringz

Больше
4 786
Подписчики
Нет данных24 часа
+127 дней
+5430 день
Архив постов
The ‘Obvious’ Secrets of Malware Analysis.pdf7.04 KB

HiddenWasp Malware Stings Targeted Linux Systems https://www.intezer.com/blog-hiddenwasp-malware-targeting-linux-systems/
HiddenWasp Malware Stings Targeted Linux Systems https://www.intezer.com/blog-hiddenwasp-malware-targeting-linux-systems/

A realtime assembler and disassembler https://disasm.pro/
A realtime assembler and disassembler   https://disasm.pro/

Get a reverse shell within 15 seconds on both Windows or Unix based systems, using the Digispark developement board. https://
Get a reverse shell within 15 seconds on both Windows or Unix based systems, using the Digispark developement board. https://github.com/HassanShehata/KeySpark

SMUC: Simplified MITRE Use Cases, it describes the Attack and Detection https://github.com/karemfaisal/SMUC
SMUC: Simplified MITRE Use Cases, it describes the Attack and Detection https://github.com/karemfaisal/SMUC

claripy Solver Engine. A frontend to z3. http://angr.io/api-doc/claripy.html
claripy Solver Engine. A frontend to z3. http://angr.io/api-doc/claripy.html

Debugging Windows Services For Malware Analysis / Reverse Engineering https://secrary.com/Random/WindowsServiceDebugging/
Debugging Windows Services For Malware Analysis / Reverse Engineering https://secrary.com/Random/WindowsServiceDebugging/

ROPGenerator is a tool that helps you building ROP exploits by finding and chaining gadgets together https://github.com/Boyan-MILANOV/ropgenerator

Portable Executable (P.E.) Code Injection: Injecting an Entire C Compiled Application https://www.codeproject.com/Articles/24
Portable Executable (P.E.) Code Injection: Injecting an Entire C Compiled Application https://www.codeproject.com/Articles/24417/Portable-Executable-P-E-Code-Injection-Injecting-a

Converts PE so that it can be then injected just like a normal shellcode. (At the same time, the output file remains to be a valid PE). Supports both 32 and 64 bit PEs https://github.com/hasherezade/pe_to_shellcode

Code that allows running another windows PE in the same address space as the host process. https://github.com/Zer0Mem0ry/RunPE

[ExpDev] Weaponizing Your Favorite PE — Portable Executable Exploit https://link.medium.com/fF6Sdvdls1
[ExpDev] Weaponizing Your Favorite PE — Portable Executable Exploit https://link.medium.com/fF6Sdvdls1