FindCrypt-Ghidra

Crypto detector

A plugin for Ghidra that enables fast identification of cryptographic functions in disassembled code.

IDA Pro's FindCrypt ported to Ghidra, with an updated and customizable signature database

GitHub

525 stars
25 watching
51 forks
Language: C++
last commit: over 3 years ago
cryptoanalysiscryptographycryptography-toolsghidrapluginreverse-engineering

Related projects:

RepositoryDescriptionStars
torgotorgo/ghidra-findcryptAn auto analysis module for Ghidra to identify and label cryptographic constants in binary files.248
polymorf/findcrypt-yaraAn IDA Pro plugin for automatically identifying and analyzing cryptographic constants within binary files.1,376
cisco-talos/ghidaA plugin that integrates Ghidra decompiler into IDA Pro to provide a GUI-based reverse engineering tool781
cisco-talos/ghidraaasExposes Ghidra analysis through REST APIs and integrates it with IDA Pro222
grayhatacademy/ghidra_scriptsTools to support exploitation and reverse engineering of IOT devices471
allsafecybersecurity/ghidra_scriptsA set of Ghidra scripts for analyzing malware and extracting insights from shellcodes using various techniques such as hash matching and deobfuscation.91
c0r0n3r/cryptolyzerA tool for analyzing and generating fingerprints of server cryptographic protocols and related settings.27
czocher/gpg-cryptA plugin for encrypting and decrypting files or directories in place9
reb311ion/replicaAn enhancement tool for Ghidra's binary analysis capabilities289
secrary/findloopAutomates identification of frequently executed code blocks in executables using DynamoRIO to generate breakpoints for analysis26
allsafecybersecurity/lazyghidraA tool to convert Ghidra data into different formats and check for potential buffer overflow vulnerabilities.139
adoreste/truehunterDetects encrypted files using a fast and memory efficient approach without external dependencies.30
jedisct1/libhydrogenA lightweight cryptographic library providing simple functions to solve common problems.637
radareorg/r2ghidraAn integration of the Ghidra decompiler into radare2 for native code analysis and reverse engineering.358
hashlookup/hashlookup-forensic-analyserAnalyze digital evidence by searching for files against a large public hash database and generating reports on findings.126