ghidra_scripts

Malware analysis tools

A set of Ghidra scripts for analyzing malware and extracting insights from shellcodes using various techniques such as hash matching and deobfuscation.

Ghidra scripts for malware analysis

GitHub

91 stars
6 watching
4 forks
Language: Python
last commit: about 1 year ago
ghidrapythonreverse-engineering

Related projects:

Repository Description Stars
securityjoes/askjoe A tool that utilizes OpenAI to assist researchers in reverse engineering malware using Ghidra 121
allsafecybersecurity/lazyghidra A tool to convert Ghidra data into different formats and check for potential buffer overflow vulnerabilities. 139
grayhatacademy/ghidra_scripts Tools to support exploitation and reverse engineering of IOT devices 471
ghidraninja/ghidra_scripts Scripts for automating reverse engineering tasks in the Ghidra software suite. 1,042
reb311ion/replica An enhancement tool for Ghidra's binary analysis capabilities 289
al3xtjames/ghidra-firmware-utils Tools to analyze PC firmware using the Ghidra reverse engineering platform 403
cyb3rmx/qu1cksc0pe An all-in-one malware analysis tool that provides detailed information about suspicious files and executables. 1,348
cisco-talos/ghidraaas Exposes Ghidra analysis through REST APIs and integrates it with IDA Pro 222
telekom-security/malware_analysis An analysis repository providing scripts, signatures, and IOCs for detecting and analyzing malware. 110
idiom/pftriage Tool to analyze files during malware analysis and triage by extracting properties and detecting malicious indicators. 77
torgotorgo/ghidra-findcrypt An auto analysis module for Ghidra to identify and label cryptographic constants in binary files. 248
d3v1l401/findcrypt-ghidra A plugin for Ghidra that enables fast identification of cryptographic functions in disassembled code. 525
federicodotta/ghidra-scripts A collection of custom scripts for Ghidra to aid in reverse engineering and analysis of iOS apps 93
jpcertcc/aa-tools A collection of tools and scripts for analyzing malware, reverse engineering malware, and decrypting encrypted data 455
dynetics/malfunction Tools for analyzing and comparing malware at a function level using fuzzy hashing algorithms 192