ghidra_scripts

Malware analysis tools

A set of Ghidra scripts for analyzing malware and extracting insights from shellcodes using various techniques such as hash matching and deobfuscation.

Ghidra scripts for malware analysis

GitHub

91 stars
6 watching
4 forks
Language: Python
last commit: over 2 years ago
ghidrapythonreverse-engineering

Related projects:

RepositoryDescriptionStars
securityjoes/askjoeA tool that utilizes OpenAI to assist researchers in reverse engineering malware using Ghidra121
allsafecybersecurity/lazyghidraA tool to convert Ghidra data into different formats and check for potential buffer overflow vulnerabilities.139
grayhatacademy/ghidra_scriptsTools to support exploitation and reverse engineering of IOT devices471
ghidraninja/ghidra_scriptsScripts for automating reverse engineering tasks in the Ghidra software suite.1,042
reb311ion/replicaAn enhancement tool for Ghidra's binary analysis capabilities289
al3xtjames/ghidra-firmware-utilsTools to analyze PC firmware using the Ghidra reverse engineering platform403
cyb3rmx/qu1cksc0peAn all-in-one malware analysis tool that provides detailed information about suspicious files and executables.1,348
cisco-talos/ghidraaasExposes Ghidra analysis through REST APIs and integrates it with IDA Pro222
telekom-security/malware_analysisAn analysis repository providing scripts, signatures, and IOCs for detecting and analyzing malware.110
idiom/pftriageTool to analyze files during malware analysis and triage by extracting properties and detecting malicious indicators.77
torgotorgo/ghidra-findcryptAn auto analysis module for Ghidra to identify and label cryptographic constants in binary files.248
d3v1l401/findcrypt-ghidraA plugin for Ghidra that enables fast identification of cryptographic functions in disassembled code.525
federicodotta/ghidra-scriptsA collection of custom scripts for Ghidra to aid in reverse engineering and analysis of iOS apps93
jpcertcc/aa-toolsA collection of tools and scripts for analyzing malware, reverse engineering malware, and decrypting encrypted data455
dynetics/malfunctionTools for analyzing and comparing malware at a function level using fuzzy hashing algorithms192